[pve-devel] PVE Firewall

Stefan Priebe - Profihost AG s.priebe at profihost.ag
Fri Jun 13 15:11:31 CEST 2014


Hi,

i would like to have different levels of firewall. Something the USER /
VM Owner can control and something the PVE Manage / Sysadmin can control.

So i can give the user the ability to use the new cool firewall code but
i can still be shure that he doesn't use a DHCP Server, didn't disable
the MAC filter and doesn't fake IP adresses.

Is this something we can archieve?

May be some kind of "global" rules inside the cluster.fw? Which the user
can't touch?

Stefan



More information about the pve-devel mailing list