Hello,
I am migrating from a virtualized pfsense router running as a KVM machine in PVE, to a hardware one, and so far, I managed to build the real one and its working fine.
Next step is to reconfigure the networking stack in PVE node. I want the following setup, but somehow all I managed to do was to render the webUI unrecheable and lock myself out of PVE... I have reseted root's password via IPMI and the procedure available in PVE's wiki page.
The setup I want to achieve:
Port eth0: physically connected to the LAN interface on the router, will serve PVE webUI, most VM's will be using this port to connect to LAN both ways (in & out), and will have IP 192.168.0.5 to access the webUI.
Port eth1: physically connected to a separate interface on the router, some VM's will be using this port to connect to a separate LAN both ways (identical as with eth0).
The reason why I have to LAN's on the router with different ports is for easier management at the firewall level.
I tried creating a bridge vmbr0 that used eth0 so my VM's could use eth0, and another bridge called vmbr1 that used eth1 so the other VM's could use eth1. All that managed to do was to render the webUI inacessible, and ssh no longer working.
Obviously I am doing something wrong. Can a single physical interface (eth0) be used simultaneously for both the webUI and for a bridge for several VM's??
Looking forweard to some pro's input here... Im lost!
A sincere thank you!
I am migrating from a virtualized pfsense router running as a KVM machine in PVE, to a hardware one, and so far, I managed to build the real one and its working fine.
Next step is to reconfigure the networking stack in PVE node. I want the following setup, but somehow all I managed to do was to render the webUI unrecheable and lock myself out of PVE... I have reseted root's password via IPMI and the procedure available in PVE's wiki page.
The setup I want to achieve:
Port eth0: physically connected to the LAN interface on the router, will serve PVE webUI, most VM's will be using this port to connect to LAN both ways (in & out), and will have IP 192.168.0.5 to access the webUI.
Port eth1: physically connected to a separate interface on the router, some VM's will be using this port to connect to a separate LAN both ways (identical as with eth0).
The reason why I have to LAN's on the router with different ports is for easier management at the firewall level.
I tried creating a bridge vmbr0 that used eth0 so my VM's could use eth0, and another bridge called vmbr1 that used eth1 so the other VM's could use eth1. All that managed to do was to render the webUI inacessible, and ssh no longer working.
Obviously I am doing something wrong. Can a single physical interface (eth0) be used simultaneously for both the webUI and for a bridge for several VM's??
Looking forweard to some pro's input here... Im lost!
A sincere thank you!