You've end up with a non standard PVE, configured in a "non-pve way of doing things", with issues that wouldn't happen if you followed the manual/best practices (PVE ACL, permissions, too many bridges). Glad it works for you, but remember the way you did all this when asking for support ;)