After analysing traffic between the two VM with firewall in datacenter ON ( 'enable: 1' in cluster.fw) I can tell the followings:
- icmp trafic is OK, each VM respond to ping from the other VM
- UDP trafic is OK (tested with netcat from both VM)
- the problem appear with TCP traffic that is...
In my network I have a physical router, separated from the proxmox cluster (and also a physical switch with vlan support). So the route would be:
proxmox node1: VM1 eth0 'vmbr1 tag 16' (192.168.16.10 in vlan 16) -> physical switch port (with vlan support) -> physical router interfaces...
Of course I have a router in my network. The problem is that the two VM can comunicate when the firewall is OFF in Datacenter -> Firewall -> Options, but when I enable the firewall the communication stop and I'm unable to set some firewall rules to reenable this commnuication (as i told you...
And forgot to mention that I can't enable communication between the two VM even if I configure 'Input Policy' and 'Output Policy' to Enable in Datacenter (if firewall is on in Datacenter, and VMs firewall and node firewall is off).
Regards,
Florin
I changed now the vlan on network interfaces (the standard way) but the problem still remain.
Now I have on network:
# network interface settings
auto lo
iface lo inet loopback
iface eth0 inet manual
iface eth1 inet manual
auto eth2
iface eth2 inet static
address 172.19.0.52...
While testing new firewall in proxmox 3.4 I encountered the following problem: when I enable firewall (in datacenter) two kvm VM that are on the same proxmox node but eth0 on each is connected to vmbr16 respectively vmbr172 can no longer communicate. vmbr16 is a bridge to eth1 (vlan 16) and...
I have set up some proxmox servers in cluster with drbd for replication. All work well except when I reboot servers in log I see:
udevd[486]: kernel-provided name 'drbd1' and NAME= 'drbd_pve_r1' disagree, please use SYMLINK+= or change the kernel to provide the proper name
This message is...
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.