ok perfect.

last question, why don't we setup public ip directly on eth0 interface, instead 
of using pm0-pm1peer ?


----- Mail original ----- 

De: "Dietmar Maurer" <[email protected]> 
À: "Alexandre DERUMIER" <[email protected]> 
Cc: [email protected] 
Envoyé: Mardi 11 Mars 2014 09:10:37 
Objet: RE: [pve-devel] pvefw: masquerade problems and conntrack zones 

> ok, thanks, I'll build the same setup, 
> (is pm0 address in the same range than pm1 ? ) 

No, that is another network (public internet) 

> If I understand, the vm tap is plugged on vmbr1, and nat must be done on 
> veth pair ? 

yes 
_______________________________________________
pve-devel mailing list
[email protected]
http://pve.proxmox.com/cgi-bin/mailman/listinfo/pve-devel

Reply via email to