firewall

  1. A

    Confusing DNS & Remote Desktop Interactions

    With the Datacenter level firewall ON and the VM level firewall OFF: I can remote into my VM from a physical computer by its IP address: 192.168.xxx.101 I can remote into my VM from a physical computer by its name: VMWindows11 With the Datacenter level firewall ON and the VM level firewall ON...
  2. R

    [SOLVED] OPNsense kein DHCP über VLAN

    Hallo zusammen, ich bin der Verzweiflung nahe und hoffe daher auf Eure Expertise und Rat hier im Forum. ich ahb ein sehr ähnliches Problem wie bereits in diesem Thread von @Yann Decay beschrieben wird: https://forum.proxmox.com/threads/dhcp-funktioniert-nicht-%C3%BCber-opnsense.86723/page-2 -...
  3. G

    Problems with opening port on Proxmox Host

    Hello, I've been strugging for days trying to open a port for nginx on a Proxmox host. I've checked that iptables is in use and not nftables as I thought maybe there was some conflict between the two - My way of doing this was "iptables -V" and I received back "iptables v1.8.9 (legacy)" - from...
  4. S

    Strange Firewall issue(s)

    Hello everyone, I am at my wits end. After enabling firewalling briefly on my proxmox machine and going to sleep, I was awoken by my alarms blaring. My ARP cache has filled with garbage proxmox firewall MAC addresses: I flushed the cache but it was immediatelly but it was quickly refilled...
  5. F

    locked out, unsure where I messed up.

    so I'm pretty new to proxmox and virtualization in general. Home assistant brought me here and I've been loving it and diving deep into the dev world. we'll today I fucked up. running a single node on a mini pc host and has been working well except for a bit of noise from the fan when the cpu...
  6. D

    Is isolation of VM's, located in the same VLAN, possible?

    We have several VM's which are running on the same Proxmox cluster within the same VLAN. They all connect to the gateway, which is a separate firewall appliance.. Is it possible to isolate those VM's from each other, just having VM and firewall communicate, but communication between VM's is not...
  7. D

    [SOLVED] SDN wrt Microsegmentation

    I've been playing around with SDN with a goal to implement a form of microsegmentation and believe that what I'm after is not currently possible without some form of work around. (VMs with multiple NICs etc) Is someone able to let me know if there is plans for the following on the horizon or if...
  8. M

    SDN No DHCP address when Datacenter firewall is enabled.

    I have firewall enabled on the datacenter level. When setting up simple sdn with DHCP. Created a new VM, but DHCP address is not getting assigned to guest. If i disable the firewall, I am able to get a DHCP address without issue. Im assuming i need to add a firewall rule to allow, just not...
  9. J

    Forbide user's vm to make ddos attack

    Hello, I would like to know how to setup the proxmox firewall to block outgoing ddos attack nd to suspend the vm where the attack came from. Thank you for your help Jean B.
  10. M

    Connection error 595: No route to host, Hetzner

    Hello, I have a problem that I have not been able to find the solution to and I imagine it could be something related to the firewall since I cannot find another problem that could be happening unless it is a bottleneck. I have a cluster of 4 machines, 3 the same and 1 different, which is the...
  11. J

    How to enable/disable a VM's firewall from the command line?

    This is probably a simple brain-o on my part, but I'm not seeing a qm option (or other command line tool) for enabling/disabling the firewall for a VM. (Note, I'm not asking how to add the ,firewall=1 option to a network interface at VM creation time nor afterwards. That's documented in the qm...
  12. M

    Komische Firewall Logs

    Hallo, ich hab letztens bei meinen VMs und containern die Firewalls aktiviert. Mir ist nach kurzer zeit aufgefallen, dass es ein paar log einträge gibt, die ich mir nicht erklären kann. hier ist zum beispiel einer 104 7 tap104i0-IN 07/Jun/2024:01:08:26 +0200 policy DROP: IN=fwbr104i0...
  13. N

    SDN SNAT not working with cluster firewall enabled

    Hi all! I've been playing around with EVPN SDNs. I have SNAT enabled on some Vnets. After some ping tests on containers, 8.8.8.8 is unreachable only once enabling the datacenter firewall. All outbound traffic is accepted by default, not sure if EVPNs require inbound rules to the hosts in order...
  14. V

    PBS behind a DMZ firewall

    Hi there, I have a specific situation and would like to know, if the approach I took, is the best for my situation or if I should rethink some of it. My situation: I have one physical server, which is behind a restricted firewall. This server is in a DMZ and is not allowed to make any...
  15. E

    Can not access terminal via network nor display nor rescue mode

    After i blocked myself via wrong firewall configuration i can not access terminal. Also tried rescue boot but it also stucks. I was blocked my GPU sake of passthrough for gaming, this might be the case. Any idea how can i restore my system? Thank you.
  16. B

    Proxmox firewall showing drop logs for another VM

    Hello everyone, I searched the forum but couldn't find a similar post... I have started to set up firewalls on my VMs. Simply, I found myself seeing some very strange logs. To explain, I have 3 VMs HostA = a simple router. ip = 10.0.0.1 HostB = a server hosting a web service on 443 port. ip =...
  17. Sorcier180

    [SOLVED] The Proxmox firewall lets everything pass, despite it being activated.

    Hello everybody My Proxmox firewall lets everything pass, despite it being activated. I configured and installed Proxmox a few years ago, as well as the integrated firewall. And everything worked perfectly until now. I didn't hit anything in particular, and I have the impression that the...
  18. T

    iperf3 connection issues on Proxmox VE 8.2.2

    Hello! A newbie here. I had a Proxmox v 7.4 + iperf3 setup earlier, so I was able to test bandwidth between host, VMs and any other PCs with no issues. I just got updated to v8.2.2 and now I'm having some issues when I'm trying to do some iperf3 test while Proxmox acting as iperf3 server...
  19. K

    [Feature request] Independent firewall rules for interface

    [Feature request 1] I want to set different firewall rules for different interfaces on the same virtual machine. So the firewall setting no longer attached to the VM, it attaches to NIC instead. Like this: eth1: Enable IP filtering (Do not allow IP spoofing) Enable MAC filtering (Do not allow...
  20. G

    nftables: no stateful rule for output

    Hi, I wanted to try nftables on Proxmox, it seems quite nicely done, bravo! I guess most users don't use any output filters, but if using them in iptables, we get a stateful output rule, allowing to only open INPUT for a given port, and assume that it will go out. Chain PVEFW-HOST-OUT (1...