[PVE-User] Block all outgoing destinations not internal for a VM

Alwin Antreich alwin at antreich.com
Fri Jun 6 12:58:33 CEST 2025


On June 6, 2025 11:11:17 AM GMT+02:00, Petric Frank via pve-user <pve-user at lists.proxmox.com> wrote:
>_______________________________________________
>pve-user mailing list
>pve-user at lists.proxmox.com
>https://lists.proxmox.com/cgi-bin/mailman/listinfo/pve-user

Hi Frank,

You can negate the match !192.168.2.0/24, the IP set has a checkbox for it. Then you can block all traffic except the internal network.

Or you order the rules, to have the allow to 192.168.2.0/24 and them deny all outgoing traffic. 

Either of the above needs to be done for the incoming traffic.

Cheers,
Alwin




More information about the pve-user mailing list