This isn't so much a support request but a feature improvement.
Currently you can set firewall rules on the cluster/dc level, hv/node and VM.
We would like to apply some rules at the highest level that filter down to VM, such as ports we want to block for all users (i.e malicious ports used for DDoS etc). Currently this can be done via command line that we've read but it moves this to manual configuration and it would be nice to have that within the GUI and replicated within /etc/pve/firewall configurations.
Seeing this in the future would likely benefit others too.
Currently you can set firewall rules on the cluster/dc level, hv/node and VM.
We would like to apply some rules at the highest level that filter down to VM, such as ports we want to block for all users (i.e malicious ports used for DDoS etc). Currently this can be done via command line that we've read but it moves this to manual configuration and it would be nice to have that within the GUI and replicated within /etc/pve/firewall configurations.
Seeing this in the future would likely benefit others too.