You have to do the following
1. Create user in pve-authentication Server
2. Go to roles and permission for a VM and assign User with appropriate permission
use either pve authentication server or create account in proxmox in shell for pam authentication. PAM authentication is per node basis whereas PVE Authentication is cluster based
It is showing only 6 cores in hardware? And hyperthreading is disabled I guess as thread per core is showing 1. Check your bios whether you disabled hyperthreading
Hi,
Is there any mechanism built in proxmox that allows new disks to be added into ceph pool automatically. I know I can go to ceph config menu and create OSD is possible. Just wondering if any orchestration possible to do that automatically
I have created an alias with a name
Mgmt with IP 192.168.10.100 at Datacenter Level
I created a policy at VM level using that alias and policy has worked fine
Now later I thought of changing name of alias from Mgmt to Management at Datacenter
Policy at VM level is not changed.
I believe it...
Anyhow I could circumvent this with addition of new rules. I hope they streamline it in future release. Like I very much miss creating my own macro ie grouping of tcp/udp ports for custom applications
Seems like a flawed design, by default firewall should allow either implicit deny or accept and if we have set the property as reject for in/out traffic then except the policies required for internal working of Proxmox, rest all should work
proxmox documentation says
Datacenter...
Yaa thats what i did, but issue is that it is allowing outgoing ssh as well. Incoming ssh is allowed that they have written in documentation as well
SO here bug is entirely different from what they have mentioned
[OPTIONS]
policy_out: REJECT
enable: 1
policy_in: REJECT
OUT SSH(ACCEPT) -source +hypervisor -dest +hypervisor -log info # SSH
IN SSH(ACCEPT) -source +hypervisor -dest +hypervisor -log info # SSH
According to this rule, ssh must only be allowed from source hypervisor to hypervisor set of...
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.