As per https://forum.proxmox.com/threads/f...vm-comunication-on-the-same-node.21372/page-2, this appears to affect many.
The suggested rule change of
does "resolve" this although may not be ideal, does allow traffic to flow.
Could proxmox either debug a fix or allow firewall overrides or a post up config for example?
Disabling the datacentre firewall isn't really a workable solution for most but is the only other fix outside of removing the rule above.
The suggested rule change of
Code:
iptables -D PVEFW-FORWARD -m conntrack --ctstate INVALID -j DROP
Could proxmox either debug a fix or allow firewall overrides or a post up config for example?
Disabling the datacentre firewall isn't really a workable solution for most but is the only other fix outside of removing the rule above.