[pve-devel] pve-firewall : add ipfilter protection

Dietmar Maurer dietmar at proxmox.com
Fri Jun 13 14:54:32 CEST 2014


> OK seems my testing is wrong.
> 
> What is did:
> 
> /etc/pve/firewall/2004.fw:
> [IPSET ipfilter-net0]
> 10.10.28.5
> 
> I then enabled the Firewall for this VM.

Also enabled the firewall in cluster.fw?

> The VM has now 10.10.28.4 on net0 - but the VM is still able to make traffic with
> 10.10.28.4. Anything i did wrong?

And you enabled the firewall on that network interface? (stop/restart VM required).
Are normal firewall rules working?


More information about the pve-devel mailing list