Secure up containers with public ip

May 20, 2019
12
6
23
36
Hallo,
I've a cluster with multiple containers.
Two of them are lamp with public ip configured.
The host have a public ip also.

If i NMAP the proxmox hosts from the VM I get those ports opened:
22/tcp open ssh OpenSSH 8.4p1 Debian 5+deb11u3 (protocol 2.0)
3128/tcp open http Proxmox Virtual Environment REST API 3.0

Actually the host's firewalls are set on drop incoming packets and there are no rules to accept packets from containers ips.

Is there a way to close all ports so if someone penetrate the public containers cannot try to pen the host?
If i block everything from the container to the host will there be any issue?

Thanks,
Giacomo.
 

About

The Proxmox community has been around for many years and offers help and support for Proxmox VE, Proxmox Backup Server, and Proxmox Mail Gateway.
We think our community is one of the best thanks to people like you!

Get your subscription!

The Proxmox team works very hard to make sure you are running the best software and getting stable updates and security enhancements, as well as quick enterprise support. Tens of thousands of happy customers have a Proxmox subscription. Get yours easily in our online shop.

Buy now!