i waited 5 hourswhen u add a rule it takes some time to become active
# pve-firewall status
Status: disabled/running
[OPTIONS]
# enable firewall
enable: 1
# pve-firewall stop
# pve-firewall start
# pve-firewall status
Status: enabled/running
You talking about KVM virtualization, we talking about OpenVZ paravirtualization, so your suggestion is not for us.klick to the VM-->Hardware-->Network Device. Now you have to activate the Firewall. After this steps the other configuration in the datacenter/nodes/vm have effect.
I can't find OpenVZ-Template...click on the OpenVZ-Template-->tab "network"-->edit "network device"-->check the point "firewall".