...

Hi Hector,

MY ISP requires to keep DMZ on one NIC physically separated from the other
trafffc

Yes, I do the same thing. Separated networks fisically.

DMZ ---> vmbr0 (IP-less)
Storage ---> vmbr1.X (Storage VLAN, IP established)
LAN ---> vmbr1.Y (Private LAN, IP established, firewall enabled)

X & Y are sub-interfaces of the eth/bond.

--
=====================================
Lic. Hector Suarez Planas
Administrador Nodo CODESA
Santiago de Cuba
-------------------------------------
Blog: http://nihilanthlnxc.cubava.cu/
ICQ ID: 681729738
Conferendo ID: hspcuba
=====================================

_______________________________________________
pve-user mailing list
[email protected]
http://pve.proxmox.com/cgi-bin/mailman/listinfo/pve-user

Reply via email to