Proxmox using iptables in openvz guests

I recently upgraded Proxmox and noticed iptables was not working in the guests.

Turns out a small edit is required to /etc/vz/vz.conf (we need to add some more modules to be used in the openvz guests).

Using any editor, open /etc/vz/vz.conf and change and find the “IPTABLES=” line

Change:

IPTABLES="ipt_REJECT ipt_tos ipt_limit ipt_multiport iptable_filter iptable_mangle ipt_TCPMSS ipt_tcpmss ipt_ttl ipt_length"

To:

IPTABLES="ipt_REJECT ipt_tos ipt_TOS ipt_LOG ip_conntrack ipt_limit ipt_multiport iptable_filter iptable_mangle ipt_TCPMSS ipt_tcpmss ipt_ttl ipt_length ipt_state iptable_nat ip_nat_ftp"

Then reboot (you can probably just re-start your guests).

This entry was posted in Linux and tagged . Bookmark the permalink.

6 Responses to Proxmox using iptables in openvz guests

  1. Pingback: Ubuntu developers: Bodhi.Zazen: Proxmox using iptables in openvz guests | Linux-Support.com

  2. myllaren says:

    This is off topic to your post above, I just want to thank you a lot for _all_ your excellent tutorials!

  3. hey daar en bedankt voor uw informatie over ssh server. ik heb zeker iets nieuws opgepikt van deze website.Ik heb anderzijds wat technisch hinder ondervonden met het gebruik van deze website, Ik heb een paar lange laad tijden gekregen voordat deze web site wordt gezien. Wees zeker dat u dit spoedig update ..

  4. lucian0308 says:

    For Proxmox 2.1 + cPanel + ConfigServer Security & Firewall – csf v5.59

    IPTABLES=”ipt_REJECT ipt_tos ipt_TOS ipt_LOG ip_conntrack ipt_limit ipt_multiport iptable_filter iptable_mangle ipt_TCPMSS ipt_tcpmss ipt_ttl ipt_length ipt_state iptable_nat ip_nat_ftp ipt_recent ipt_owner iptable_nat ipt_REDIRECT xt_connlimit”

  5. lucian0308 says:

    restart proxmox and start all CT’s

    /etc/init.d/vz restart

    start CT’s from proxmox gui

  6. rosa says:

    Bedankt voor de informtie, heel belangrijk voor mij

Leave a Reply

Your email address will not be published. Required fields are marked *

You may use these HTML tags and attributes: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>