firewall on host and openvz question

RobFantini

Famous Member
May 24, 2012
2,018
104
133
Boston,Mass
Hello
On the host node we've installed a ConfigServer Scripts firewall. It is working well so far.

However from within a vz with a venet network we're unable to access the network [ ping and ssh out do not work]. When I changed the network type to bridged in the vz the network does work.

I tried adding this to /etc/vz/vz.conf and restarting vz :
Code:
IPTABLES="ipt_REJECT ipt_recent ipt_owner ipt_REDIRECT ipt_tos ipt_TOS ipt_LOG ip_conntrack ipt_limit ipt_multiport iptable_filter iptable_mangle ipt_TCPMSS ipt_tcpmss ipt_ttl ipt_length ipt_state iptable_nat ip_nat_ftp"

My question - when csf or a firewall is running on the host , is bridged network needed for vz?
 

About

The Proxmox community has been around for many years and offers help and support for Proxmox VE, Proxmox Backup Server, and Proxmox Mail Gateway.
We think our community is one of the best thanks to people like you!

Get your subscription!

The Proxmox team works very hard to make sure you are running the best software and getting stable updates and security enhancements, as well as quick enterprise support. Tens of thousands of happy customers have a Proxmox subscription. Get yours easily in our online shop.

Buy now!