create vm - network firewall

robertkwild

Member
Jun 17, 2022
32
1
13
hi all,

when im creating a new vm and when i come to the "Network" tab and "Firewall" tick box, what is this for, is this the system firewall, as i disable that anyway?

thanks,
rob
 
If you don´t want to use the integrated firewall, then disabling it is no issue.
If you want to use the integrated firewall for that guest, it will only work for NICs with the firewall checkbox enabled.
 
This has to do about the firewall that is available on Proxmox VE itself. Whatever happens inside the guest regarding firewalls is not affected by these settings.
 
  • Like
Reactions: robertkwild
There is only one firewall on the host if you enable it. (iptables under the hood)
You can define rule for specific guests. These will only affect the guest as iptables forwarding rules are used.
But, they will only work if the firewall checkbox is enabled for the NICs used by the guest.

So the "Firewall" checkbox for the NICs does not mean that the firewall will be enabled for that guest (that is done in the Firewall submenu of each guest). But if that NIC should be involved with the firewall, should it be enabled for the guest.

With the firewall checkbox, the networking stack for that guest NIC gets less complicated, so could give you slightly better performance, but the difference shouldn't be big.
 

About

The Proxmox community has been around for many years and offers help and support for Proxmox VE, Proxmox Backup Server, and Proxmox Mail Gateway.
We think our community is one of the best thanks to people like you!

Get your subscription!

The Proxmox team works very hard to make sure you are running the best software and getting stable updates and security enhancements, as well as quick enterprise support. Tens of thousands of happy customers have a Proxmox subscription. Get yours easily in our online shop.

Buy now!