OVH Community

Welcome to your community space. Ask questions, search for information, post content, and interact with other OVH Community members.

Proxmox with vm pfsense connected via public ip on vrack don't ping gateway


#1

Hi
I have a 2 proxmox 5 in cluster mode with interface eno1 for hypervisor access.
Interface eno2 is connected to the vrack, with one bridge vmbr1 for public VM’s and for communication to the other node, an a other bridge vmbr2 linked to eno2.200 (vlan for private VM’s)
All VM’s in the private Vlan can communicate on the same vlan (ping is ok)
I have setup a pfsense VM with the WAN interface on vmbr1 and assign a public IP from my Ip RIPE Block and configure the gateway with the last usable ip of this block . Fpsense cannot ping the gateway for this block BUT VM’s with ip from my ip RIPE block bridged on the same vmbr1 can access internet and ping the gateway (ubunt 16.04 for OS)… Why ubuntu can ping and fpsense not ???
The lan interface o fpsense is bridged with vmbr2. All VM’s with private Ip can ping the lan interface of pfsense and each other private VM’s

part of interface config for proxmox

#public interface for proxmox
auto vmbr0
iface vmbr0 inet static
address 54.xx.xx.xx
netmask 255.255.255.0
gateway xx.xx.xx.254
broadcast xx.xx.xx…255
bridge_ports eno1
bridge_stp off
bridge_fd 0
network 54.xx.xx.xx

#interface to Vrack
auto vmbr1
iface vmbr1 inet static
address 172.16.0.2
netmask 255.255.255.0
broadcast 172.16.255.255
bridge_ports eno2
bridge_stp off
bridge_fd 0
bridge_vlan_aware yes
network 172.16.0.0
echo 1 > /proc/sys/net/ipv4/ip_forward

#second bridge to Vrack
auto vmbr2
iface vmbr2 inet static
address 192.168.2.2
netmask 255.255.255.0
broadcast 192.168.2.255
bridge_vlan_aware yes
bridge_ports eno2.200
bridge_stp off
bridge_fd 0
echo 1 > /proc/sys/net/ipv4/ip_forward

for pfsense
wan to vmbr1 (with one ip from my ip’ripe block
lan to vmbr2 (with private ip’s 192.168.2.x)


#2

Hi @ArnaudG,

Thanks for contacting us.

Please can you create a Support Ticket and DM me the number so I can take a look into this for you?

Thanks,
Ollie


#3

HI, here are the ticket number : 584902815

thx