How to use firewall with NAT

cartwright118

Active Member
Dec 21, 2015
1
0
41
34
Hi Guys,

Wondered if you could help me please...

I have NAT (Masquerade) setup and working on my Proxmox setup.
I also have the firewall enabled at the Datacenter, Host and VM levels.
The Datacenter and Host level firewalls seem to be working perfectly and only allowing ports I have allowed.
Input policy for these is set to 'Drop'.

However I'm having an issue whereby even though I have the firewall enabled on the VM level, and selected input policy to drop, it still allows all traffic to the VM. Is this because NAT is setup and maybe a 'FORWARD' chain which the firewall is just allowing to pass through?

Can Proxmox Firewall be configured for NAT connections?
Alternatively, should I just configure the client VM IPTABLES instead? (Currently, this isn't being used)

Thank you!
Christian