firewall

  1. M

    Proxmox 8.3.3. access problems - including VM

    Hello, I am using Proxmox 8.3.3. and after a reboot I cannot access GUI, cannot ping proxmox or any VM (VMs are not online as well). I can reach proxmox server over SSH anr Winscp. There are no errors (I went through previous threads on this subject and all rights to folder and certificates...
  2. C

    Custom firewall rules not loading with proxmox-firewall and nftables

    I have an internal vnet with systems that needed access to the Internet. With the newer proxmox-firewall I was able to create a new table with the necessary rules and save the changes to /etc/nftables.conf but the rules are not loaded at boot. The documentation says this on custom rules: "If you...
  3. J

    Proxmox Firewall Blocking Access to Container via Domain Name, but Allows Direct IP Access

    Hello everyone, Let me explain the situation to see if you can help me: I have configured the firewall in Proxmox to access a container running Proxmox Backup Server. The rules I’ve applied to the PBS container are the following: Block any request and protocol from any IP. Allow TCP...
  4. D

    [SOLVED] An app having trouble binding ports when installed on host

    I'm trying to get coolercontrold up on my PVE instance. When installed on host and initialized, logs output: IPv4 bind error: Could not bind to standard IPv4 loopback address on port 11987 Is there any sort of firewalling measure on PVE that could potentially cause this?
  5. M

    pve-firewall with nftables enabled: pending changes

    I'm having issue with pve-firewall having "pending changes" as soon as I enable nftables at the host level pve-firewall status Status: enabled/running (pending changes) Restarting pve-firewall does not help Deleting all VNet firewall rules does not help Linux x3 6.8.12-4-pve #1 SMP...
  6. N

    Bug: When we edit an alias name or IPSet name, rules with alias or IPSet (alias into too) are not updated with new alias name

    Hello all, I have discovered a big bug: When we edit an alias name or IPSet name, rules with alias or IPSet (alias into IPSet too) are not updated with new name. I have tested with: Datacenter firewall: -> /etc/pve/firewall/cluster.fw Node firewall: -> /etc/pve/nodes/XXXX/host.fw VM...
  7. N

    Bug: When we edit an alias name or IPSet name, rules with alias or IPSet (alias into too) are not updated with new alias name

    Hello all, I have discovered a big bug: When we edit an alias name or IPSet name, rules with alias or IPSet (alias into IPSet too) are not updated with new name. I have tested with: Datacenter firewall: -> /etc/pve/firewall/cluster.fw Node firewall: -> /etc/pve/nodes/XXXX/host.fw VM...
  8. T

    nftables-based firewall seems to ignore `firewall` parameter on VM network interfaces

    I've been testing out the newer nftables-based firewall, and outside of the (very annoying) syntax changes for iplists/aliases, it seems to be working well. However, I noticed an issue when configuring a VM that has three network interfaces. Only two of the three interfaces have the firewall...
  9. H

    Teamspeak not longer reachable with active firewall

    Help! I have TS3 running on a lxc. I can connect to the TS3 server locally and externally as long as the container's firewall is deactivated. There are two security groups added: 1. webserver - accepts incoming HTTP and HTTPS (80 and 443) and also SSH (22); no source port, no destination or...
  10. B

    how to put pfSense vm in front of proxmox ve

    Hello everyone. I have rented a dedicated server with Proxmox VE 8.3 installed. It is accessible via the public IP address 32.43.54.65:8006 (not a real ip). I want to set up a pfSense virtual machine on Proxmox and configure it so that Proxmox itself and all future virtual machines are behind...
  11. W

    Configure network WAN & LAN for the FW

    Hello everyone, so I am trying to implement a Sophos FW as a VM in proxmox. I have watched this video ( https://www.youtube.com/watch?v=7pvgKc3WdEg ), everything has worked till the network config, I don't know how to configure my WAN and LAN interface. This is my home network: And this is my...
  12. J

    [SOLVED] VM cannot access another VM in Proxmox 7.4

    Hey everyone! I have a Proxmox 7.4 cluster with several nodes. Across them, there are two VMs, live and test, both based on Ubuntu 18.04, both with a private IP address for communication among LXCs and VMs, and with a public IP address to access the Internet. Firewall is open for specific ports...
  13. P

    Isolating VNC Connections

    Wiki for reference: https://pve.proxmox.com/wiki/VNC_Client_Access I'm looking into adding this to some of my VMs to make them more accessible. However, I'd like to isolate the VNC network from Proxmox MGMT in general. I've run into a few issues so far, and I'm not quite sure the best...
  14. D

    Cannot ping host nor access web GUI on VLAN

    Hello, I am having a hard time accessing my Proxmox server. I have one router sitting between my computer and the Proxmox. The Proxmox is connected through 1 physical cable to the router, which is configured as a VLAN trunk port with VLAN 10 and 30 configured. For VLAN 10, I am using the network...
  15. S

    Vnet firewall edit permission

    I have a user on my cluster that I want to give permission to edit their own vnet firewall rules. I created a separate SDN zone for them as I don’t see a way to give permissions on just a single vnet. I can give them permission to use that SDN zone, but I can’t find a way to give them access to...
  16. P

    Proxmox FW dont blocks traffic to vm

    i have a problem with the pve fw: i have the fw activated on my cluster, host and vm so i create a fw rule on my host: source: https://www.cloudflare.com/de-de/ips/ destination: myip/24 even in my /etc/pve/nodes is the entry IN DROP -source +dc/cloudflare-v4 -dest +dc/packets-ipv4-network...
  17. I

    Have no idea how to configure network

    Hi Everyone, could you please give an advice how to configure my network? Looks like I got stuck. I have Proxmox server and I install OPNsense firewal as a VM inside PVE. After that I passthrough a 2 NIC PCIe network card derectly to the VM. OPNsense (firewall) work perfectly with all...
  18. G

    [SOLVED] fwbr/fwpr/fwln interfaces although firewall is disabled

    Hello, I have tap/fwbr/fwpr/fwln interfaces for each VM interface although I have Proxmox firewall disabled on cluster, node and all vms. I have enabled the firewall once, but disabled it again. Example: # ip a|grep 104 22: tap104i0: <BROADCAST,MULTICAST,PROMISC,UP,LOWER_UP> mtu 1500 qdisc...
  19. B

    Plex LXC not maintaining (getting?) external connectivity

    Hi folks. Apologies in advance - I am very much a Windows person from a professional perspective, but am "tinkering" with ProxMox and VMs, etc. at home for a personal home setup - mostly as I wanted to set up a dedicated Satisfactory server (which is working perfectly fine - including the port...
  20. V

    How to set up a Proxmox server with VM gateway for failsafe management access with only one public IP?

    I'm setting up Proxmox server with pfSense as a VM to act as the main gateway/firewall. The system is in a remote location with a single ISP connection in passthrough mode providing a public IP. My concern: If the pfSense VM becomes inaccessible, I could lose remote management access to the...