Search results

  1. T

    Guest default gw after migrating

    These are 3x ovh dedicated servers directly connected to internet with first nic and to their vrack/vlan with second nic. The second bridge it's used to let the VMs to communicate and to reach other pysical servers I run into the vrack/vlan (via masquerade) I never used BIRD tbh... :)
  2. T

    Guest default gw after migrating

    thank you soooo much! :) it worked with: ip addr add 10.240.10.1/32 dev lo unfortunately I'm unable to set it correctly on network/interfaces file but isn't a great issue, I'm going to set it at startup.
  3. T

    Guest default gw after migrating

    hi, I like your idea, could you please just explain a bit more? by "lo" do you mean the loopback device? How do the vms could reach such ip if local only to the hosts? this is my current interfaces file from one my hosts: auto lo iface lo inet loopback iface eno1 inet manual iface eno2 inet...
  4. T

    Guest default gw after migrating

    Hi, thank you for your reply. Please have a look at the diagram I added to the main thread. Basically, when I need to migrate a VM from an host to another, I also need to change its (guest) default gateway manually. I don't have a common router.
  5. T

    Guest default gw after migrating

    Hi, I'm currently testing pve features on a 3x nodes cluster. I have some test vm which I'm able to migrate from host to host easily. My problem is: I'm using host's ip as current default gateway for the guest os to outgoing to internet, how do I inform/switch the gw in case of a migration? Do...
  6. T

    Blocking 22 on firewall breaks ceph networking

    I finally spot the problem... Quick note for anyone else in the future can find this thread usefull: it was the wrong interface... :confused: TL;DR I run small lab cluster and each node is hosted as bare metal in ovh servers; they are equipped with two network interfaces: one is connected to...
  7. T

    Blocking 22 on firewall breaks ceph networking

    Trying to limit the issue to one thing at once, I'm currently working on port 22 only (macro ssh). If I activate it (in, accept, source my pve cluster ipset), no ssh connections can be made between hosts (attempted through ssh command directly)... If I ssh to their public endpoints... it works...
  8. T

    Blocking 22 on firewall breaks ceph networking

    Hi, yes, it was turned on. I think I have partially solved my problem adding ALLOW both IN and OUT directions for ceph macro. Now ceph stays up-green. Anyways, I'm unable to move data between hosts, for instance if I try to migrate a VM from node to node, task begin but stays there forever...
  9. T

    Blocking 22 on firewall breaks ceph networking

    I honestly don't even know how to enable/disable macros.... Yes, IPSet includes 3x cluster network ips and 3x ceph network ips; double checked it. I have though 2x bridge interfaces: vmbr0 connected to the public and vmbr1 bridged to 2nd nic.
  10. T

    Blocking 22 on firewall breaks ceph networking

    Hi, thank you, I didn't know they were draggable :-) Now I'm just using default DROP on INPUT with two rules: 1- allow 8006 (to keep managing) 2- allow for CEPH macro and source/dest set with the ipset containing all the nodes Anyways, when I'm going to activate the firewall ceph section...
  11. T

    Blocking 22 on firewall breaks ceph networking

    Hi, I have current configuration running on 3x ovh servers' cluster: vrack vlans: 10.240.10.x -> vlan for servers communications and VMs 10.240.99.x -> vlan for ceph I want to close ssh ports on al nodes from the outside, keeping them to be able to talk each other and keep everything in sync...

About

The Proxmox community has been around for many years and offers help and support for Proxmox VE, Proxmox Backup Server, and Proxmox Mail Gateway.
We think our community is one of the best thanks to people like you!

Get your subscription!

The Proxmox team works very hard to make sure you are running the best software and getting stable updates and security enhancements, as well as quick enterprise support. Tens of thousands of happy customers have a Proxmox subscription. Get yours easily in our online shop.

Buy now!