Hello everyone,
I have just setup a fresh Proxmox 9 install, added a Container and started firewalling the system. I enabled the firewall for the datacenter, the host and the container. Everything works fine except for the container firewall. I can see from the "nft list ruleset" output that the rules for the container are not added. The firewall is enabled on the virtual network adapters (2) of the LXC aswell as in the configuration menu of the container firewall under options. The default input policy is drop and I have two rules allowing traffic to a specific port on the container. I was quite suprised, when I saw I could connect to the ssh server on the container through its global IPv6. IPv4 is not a problem for me since I have to use NAT and without explicit rules no forwarding happens, but I guess since the set rules do not show up at all it does not work for either of the two.
Has anyone experienced the same behaviour?
I have just setup a fresh Proxmox 9 install, added a Container and started firewalling the system. I enabled the firewall for the datacenter, the host and the container. Everything works fine except for the container firewall. I can see from the "nft list ruleset" output that the rules for the container are not added. The firewall is enabled on the virtual network adapters (2) of the LXC aswell as in the configuration menu of the container firewall under options. The default input policy is drop and I have two rules allowing traffic to a specific port on the container. I was quite suprised, when I saw I could connect to the ssh server on the container through its global IPv6. IPv4 is not a problem for me since I have to use NAT and without explicit rules no forwarding happens, but I guess since the set rules do not show up at all it does not work for either of the two.
Has anyone experienced the same behaviour?