VM/Client isolation

floh

Active Member
Jul 19, 2018
62
5
28
Hello!

I'm currently working on a way to prevent VMs to talk to each other within the same vmbr.
(like client isolation these days used in WIFI or port isolation used by many enterprise switches)

When activating port isolation at the physical switch I prevent all devices to talk to each other (which are directly connected to the switch).
But all VMs running on Proxmox will/are still routing (no surprise here).
Is there a smart way to activate client/port isolation on the hypervisor?
--> so creating a vmbr/subnet for each VM is not the smart way I assume

Kind regards,
Floh
 
Hello!

I'm currently working on a way to prevent VMs to talk to each other within the same vmbr.
(like client isolation these days used in WIFI or port isolation used by many enterprise switches)

When activating port isolation at the physical switch I prevent all devices to talk to each other (which are directly connected to the switch).
But all VMs running on Proxmox will/are still routing (no surprise here).
Is there a smart way to activate client/port isolation on the hypervisor?
--> so creating a vmbr/subnet for each VM is not the smart way I assume

Activate firewall (no special settings needed) for the NICs on these VMs.
 
  • Like
Reactions: ebiss and DerDanilo

About

The Proxmox community has been around for many years and offers help and support for Proxmox VE, Proxmox Backup Server, and Proxmox Mail Gateway.
We think our community is one of the best thanks to people like you!

Get your subscription!

The Proxmox team works very hard to make sure you are running the best software and getting stable updates and security enhancements, as well as quick enterprise support. Tens of thousands of happy customers have a Proxmox subscription. Get yours easily in our online shop.

Buy now!