OK, I do not have the proxmox host firewall enabled on. In addition, I define this bridge at /etc/network/interfaces.d/eap_auth and my /etc/network/interfaces file has the below line: source /etc/network/interfaces.d/* so proxmox is blind to this bridge, but by memory this worked for me when I...
Might sound weird but try to restart the ont and then try again. I have had once or twice where it would allow dhcp to a new VM after I restarted the ont.
Maybe I am inferring wrong, but sort of confused on how you might be doing wan nic passthrough (iommu or sr-iov?) to UTM at the same time the proxmox host is using that same nic to do the wpa-auth?
In case I want to give this a try in the future, what steps did you use to do WPA-auth on the...
Vlan0 not needed for the initial eap-auth.
Vlan0 still required for ATT DHCP/gateway access and normal internet traffic, by memory when I set this up.
by my understanding no host, gateway,dhcp, or dns traffic other than eAP-auth to/from att without vlan0, so not sure what security issues that...
Spit-balling, but Could you put a delay inside the *sense vm itself? Boot script or something that would slow down the startup?
or can you move the wpa-sup into Proxmox and let Debian do the EAP-Auth, then, just pass vlan0 to *sense as wan.
EDIT: one reason mine may work is that I am not doing...
Has worked for me from proxmox version 6.4 through latest 7.4. What I am doing is basically a slightly improved version of what the original creator of pfatt did with proxmox back in 2018 before actually figuring out the now famous BSD/pfatt solution.
EDIT #1: something else to consider that...
Just never found the time to root my gateway and pull the certs, I should have as it is likely easier to migrate the Opnsense Vm among proxmox nodes that way. Used My setup for opnsense 19 or so through the latest as of yesterday's update. Also works with vyos, pfsense and openwrt VM.
if the...
Where are you keeping the certs ... on proxmox, a router VM or elsewhere? I bridge my ONT connection to my ATT modem for that part with the below:
#Linux Bridge to complete EAP/802.1X auth between ATT Modem and ONT.
#this files keeps br0 invisible to proxmox
#group_fwd_mask makes sure 802.1X...
You should be ab able to use SDN/vxlan to give VM/LXC access to the mesh network.
https://forum.proxmox.com/threads/is-there-a-cluster-bridge-or-cluster-level-networking.124309/post-543900
Check out the pinned thread on the 6.2 opt-in kernel. A couple of us have had issues with networking there.
https://forum.proxmox.com/threads/opt-in-linux-6-2-kernel-for-proxmox-ve-7-x-available.124189/post-540878...
@VictorSTS & @johnec
Youtube of someone doing very similar with OSPF over proxmox 7.3. I little diff setup in that I think he only enables IPv6 forwarding in frr and not at sysctl file: nano /etc/sysctl.conf, but maybe I missed it. He is supposed to do a follow-up setting up Ceph...
Nic names appear to be the same. Tried ip link up on all 4, let me know if another command would be more appropriate:
Let me know if another journalctl command would be better?
Tried the latest kernel on one of my axiomtek NA362-DAMI-C3758-US nodes. None of the 4 built-in Intel X553 10 GbE SFP+ (rev 11) SFP will establish a link and all remain down. A pair is connected via DACs to a managed switch in an LACP bond. The other 2 are connected in an frr mesh routed setup...
@jehchoi1
I would recommend option 2, bond0 using LACP.
With LACP specifically - yes you would also need to configure an LACP bond with gi0/1, 2, and 3 from within the cisco switch software.
again basically all of those bond setup are designed to connect increase redundancy between 2 devices not allow for simultaneous connections between 3 devices (I.e. Proxmox directly connected to 2 different PCs).
my use of AP, come directly from your first post where you intruduced it:
i am...
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.