During IP changes of multiple hosts I noticed that MAC and IP filters were no longer functional in my configuration.
While trying to understand why this behavior changed from when I initially set up IP filtering I noticed that ebtables rules are no longer created when the firewall is disabled on...
Im trying to configure the IP-filter but so far no luck.
/etc/pve/firewall/102.fw
[IPSET ipfilter-net0]
xx.xx.111.42 # net0
With the above config spoofing is still possible. Am I missing a setting?