Search results

  1. T

    Failover virtual port to physical ?

    Thanks for your reply. I am planning to use CARP to have the 2 routers on the same network like this :https://docs.opnsense.org/manual/how-tos/carp.html The traffic handover is done by the backup router taking the VIP when it detects the first member is down and it can even sync packet filter...
  2. T

    OPNsense - weird behaviour

    Not sure it applies to your config because I don't have a DMZ but I have something similar that is working fine for me : passing several NIC using oci passthrough to my opnSense VL as well as a virtual network card attached to vmbr0 like all my other VMs. Then in OpnSense I create a bridge...
  3. T

    [SOLVED] ipv6 not fully disabled ?

    In the end my issues were with my Wireless AP that is running openWRT and that is somehow distributing IPV6 adresses by DHCP despite the config having no IPv6 ULA prefix and DHCP disabled... I got tired of tring to disable IPv6 on the AP and juste plugged it off and replaced by another AP...
  4. T

    Failover virtual port to physical ?

    Hello, I use proxmox to virtualize my main router, passing it all physical NICs for the moment, and also passing a virtual port to vmbr0 so that my router gives access to all other VMs to my wider network (and to the proxmox admin GUI) I face an issue when I backup my router VM since it's...
  5. T

    Feature Request: Traefik integration

    Hello, I think Traefik offers APIs that Proxmox could leverage to become an integrated provider. In the end, the goal would be that upon LXC or VM startup/shutdown, some config gets pushed or removed to Traefik. The config in question should be an optional field for the user to define on the...
  6. T

    [SOLVED] ipv6 not fully disabled ?

    Well the fun part about it is that if I insist and keep running te curl command, sometimes, quite randomly, it does decide to contact the 212.27.32.66 and those times it does manage to fetch the index.html page properly. I think my suricata IDP was maybe slowing things down and causing issues...
  7. T

    [SOLVED] ipv6 not fully disabled ?

    Thanks for your help. Sadly, I checked already and all 3 values are properly set when as sysctl shows after reboot. My guess is that somehow, the dns living on opnSense VM does pull an IPv6 adress for the ftp.debian url when openVPN is connected to PIA, despite opnSense having IPv6 disabled for...
  8. T

    [SOLVED] ipv6 not fully disabled ?

    Hello, I have disabled IPv6 on my pve host like this : (and rebooted several times since then) root@pve:~# tail -n 6 /etc/sysctl.conf ################################################################### # Disable IPv6 net.ipv6.conf.all.disable_ipv6=1 net.ipv6.conf.default.disable_ipv6=1...
  9. T

    shutdown order (networking and ssh after vm shutdown)

    Hello, I use pve to virtualize an opnSense box. I have all physical networking passed through (pci passthrough) to the opnSense I added an openvswitch iterface, to which the pve host gets an ip and the opnSense box adds this virtual interface to the bridge of all other physical interfaces. All...
  10. T

    "Backup" in case of SSD failure

    Thanks for the reply ! I'm not so keen in getting mdadm running again, was quite slow and heavy last time I used it, no doubt it has made progress in the last 10 years, but still... The most appealing option you propose is rsync. I get that with rsync the idea would be to setup the main disk as...
  11. T

    "Backup" in case of SSD failure

    Hello, I got this hardware : https://a.aliexpress.com/_BOMxxw It's very nice but it's using a cheap M.2 SATA SSD without any DRAM cache and probably multi layer. I'm running opnSense on top of proxmox, and since my setup is quite complex, I fear this cheap SSD will fail me and I'm looking into...
  12. T

    Proxmox as host for main pfSense router

    Thanks @mbosma and @guletz . Graph is made with draw.io website, free and nice to use ;) I strongly advise to use it for your own needs ;) I get the idea of splitting things up in several hardware, and I'd actually say the same myself for a business, but it's my home setup, need to keep in...
  13. T

    Proxmox as host for main pfSense router

    Thanks @mbosma. I hear your advice, I will keep a NIC dedicated to pve, probably won't loop it back to save on space on those "only" 6 NICs, and also to see how performance is with the virtual switch. I hope I'll almost never use pve after the initial setup, and I'll be a single user consuming...
  14. T

    Proxmox as host for main pfSense router

    A wild guess : on startup pve could not start the VMs while waiting for an IP being assigned by a DHCP on the virtual interface, but cannot get it since it's the virtual pfsense that's my DHCP and it's not yet started... Snake eating it's own tail...deadlock.
  15. T

    Proxmox as host for main pfSense router

    Thanks a lot for the very quick response! I'll only receive the hardware in a few weeks but I expect to be able to pass each of the 6 physical NIC individually. Following your advice I will leave one NIC for pve, but I'll probably keep it unplugged, just in case of issue, and would still use pve...
  16. T

    Proxmox as host for main pfSense router

    Hello everyone, I'm looking to get a new firewall and I'm looking for advice on how to deal with certain aspects. Attached is a global view of what I want to do. My current concern is how to get good throughput and still good isolation for the VMs I start on proxmox like (C) and (D) or others...

About

The Proxmox community has been around for many years and offers help and support for Proxmox VE, Proxmox Backup Server, and Proxmox Mail Gateway.
We think our community is one of the best thanks to people like you!

Get your subscription!

The Proxmox team works very hard to make sure you are running the best software and getting stable updates and security enhancements, as well as quick enterprise support. Tens of thousands of happy customers have a Proxmox subscription. Get yours easily in our online shop.

Buy now!