Skip to content

Set-PveNodesLxcFirewallOptions

Set Firewall options.

API: PUT /nodes/{node}/lxc/{vmid}/firewall/options, Proxmox VE API viewer

Set-PveNodesLxcFirewallOptions
[-PveTicket <PveTicket>]
[-Delete <string>]
[-Dhcp <bool>]
[-Digest <string>]
[-Enable <bool>]
[-Ipfilter <bool>]
[-LogLevelIn <string>]
[-LogLevelOut <string>]
[-Macfilter <bool>]
[-Ndp <bool>]
-Node <string>
[-PolicyIn <string>]
[-PolicyOut <string>]
[-Radv <bool>]
-Vmid <int>
[<CommonParameters>]
Parameter Type Required Description
-PveTicket PveTicket No Ticket data connection.
-Delete string No A list of settings you want to delete.
-Dhcp bool No Enable DHCP.
-Digest string No Prevent changes if current configuration file has a different digest. This can be used to prevent concurrent modifications.
-Enable bool No Enable/disable firewall rules.
-Ipfilter bool No Enable default IP filters. This is equivalent to adding an empty ipfilter-net<id> ipset for every interface. Such ipsets implicitly contain sane default restrictions such as restricting IPv6 link local addresses to the one derived from the interface’s MAC address. For containers the configured IP addresses will be implicitly added.
-LogLevelIn string No Log level for incoming traffic. Values: emerg, alert, crit, err, warning, notice, info, debug, nolog.
-LogLevelOut string No Log level for outgoing traffic. Values: emerg, alert, crit, err, warning, notice, info, debug, nolog.
-Macfilter bool No Enable/disable MAC address filter.
-Ndp bool No Enable NDP (Neighbor Discovery Protocol).
-Node string Yes The cluster node name.
-PolicyIn string No Input policy. Values: ACCEPT, REJECT, DROP.
-PolicyOut string No Output policy. Values: ACCEPT, REJECT, DROP.
-Radv bool No Allow sending Router Advertisement.
-Vmid int Yes The (unique) ID of the VM.

Every parameter also binds by property name from the pipeline, so an object with node and vmid properties (the output of Get-PveGuest, for one) fills -Node and -Vmid. Without -PveTicket the cmdlet uses the last connection, see Connection.

A PveResponse: the data returned by Proxmox VE is in .Response.data, the outcome in .IsSuccessStatusCode. See Results and Errors.