How to access Proxmox host after setting up OPNsense?

natedogg

New Member
Sep 25, 2023
16
0
1
I have a question here as well.

I had originally configured Proxmox Host as 10.0.0.91 on my 4th ethernet port.

When I setup my WAN/LAN, I put them on enp1s0 and enp2s0, respectively.

I then created a Linux Bridge (vrmb1 and vrmb2) to map to the WAN/LAN.

Once I got OPNsense up and running, the only way to access Proxmox was by plugging enp4s0 into my switch. However, I'd like to avoid needing to go through my switch, so I tried setting an IP on vmbr2 which is my LAN bridge. BUT, when I unplug enp4s0, I can no longer access Proxmox via 10.0.0.5.

I haven't rebooted the host, but I did apply the changes and can access it via 10.0.0.5 when plugged in. Is this the right configuration? I was hoping to just use enp4s0 as a backup in case OPNsense went down or something. Also, it would be nice to have any other additions LXCs or VMs running on the host to be able to use the bridge directly without needing to go through the switch.

Screenshot 2023-09-26 at 1.51.53 PM.png

Screenshot 2023-09-26 at 2.09.03 PM.png
 
An OS should not have two IPs in the same subnet or there might be routing problems. So you have to decide if you want to give enp4so or enp2s0 an IP address.
 
An OS should not have two IPs in the same subnet or there might be routing problems. So you have to decide if you want to give enp4so or enp2s0 an IP address.

Thanks, I removed the 10.0.0.91 entry and was able to access it without plugging in enp4s0.

However, I had a new problem tonight. OPNsense was unresponsive and I had no way to access the web interface for Proxmox. How could I set it up so that I could still access the web interface (maybe by plugging it into a laptop’s Ethernet port?) if my router/opnsense goes down?
 
Connect another machine with a static IP of your LANs subnet (like 10.0.0.100/24) either directly to your enp2s0 (you might need a crossover cable) or connect enp2s0 to a switch and then your laptop to that switch.
As long as you are using a static IP of the same subnet as the PVE host and don't rely on DHCP you should still be able to access the web UI as no routing or DHCP of the OPNsense would be required.
 
If I connect a laptop with a static IP to enp2s0 directly, would I be able to access the Proxmox web interface even if OPNsense is completely down, and without needing to reboot anything on the Proxmox host?
 
If I connect a laptop with a static IP to enp2s0 directly, would I be able to access the Proxmox web interface even if OPNsense is completely down, and without needing to reboot anything on the Proxmox host?
ich würde dir empfehlen mit wireguard zum installer auf deine leptop und dann auf proxmox umleiten dass du zugrief hast und mit kommando pfctl -d firewall deaktivieren und schnell möglich eine account erstellen dass du kann über wireguard kann dich anmelden

I would recommend you to use wireguard to install the program on your laptop and then redirect it to proxmox that you have access to and use the command pfctl -d to deactivate the firewall and as quickly as possible create an account that you can log in to via wireguard.