Hi,
I'm planning a migration on a new PVEs infrastructure of many VMs.
One customer have a lot (50, growing) of tiny VMs on the same subnet that needs only internet access (in/out).
They asked if we can "isolate" these VMs.
In the "classic" way for every VM we have to:
- create a VLAN (on PVE and switches)
- creating a subnet, rules, 3 IPs (pfsense with HA) on the firewall
- configuring the VM for the new network
A very long activity (somewhere scriptable, somewhere not)...
Is there any way to achieve a "VM isolation" in proxmox VE for a set of VM that are on the same VLAN/bridge?
In simple terms: every VMs on the same VLAN/subnet must talk only with the default gateway and not with other VMs.
Thanks in advance for any solutions or suggestions!
Bye,
Edoardo
I'm planning a migration on a new PVEs infrastructure of many VMs.
One customer have a lot (50, growing) of tiny VMs on the same subnet that needs only internet access (in/out).
They asked if we can "isolate" these VMs.
In the "classic" way for every VM we have to:
- create a VLAN (on PVE and switches)
- creating a subnet, rules, 3 IPs (pfsense with HA) on the firewall
- configuring the VM for the new network
A very long activity (somewhere scriptable, somewhere not)...
Is there any way to achieve a "VM isolation" in proxmox VE for a set of VM that are on the same VLAN/bridge?
In simple terms: every VMs on the same VLAN/subnet must talk only with the default gateway and not with other VMs.
Thanks in advance for any solutions or suggestions!
Bye,
Edoardo