Set-PveNodesLxcFirewallOptions
Set Firewall options.
API: PUT /nodes/{node}/lxc/{vmid}/firewall/options, Proxmox VE API viewer
Syntax
Section titled “Syntax”Set-PveNodesLxcFirewallOptions [-PveTicket <PveTicket>] [-Delete <string>] [-Dhcp <bool>] [-Digest <string>] [-Enable <bool>] [-Ipfilter <bool>] [-LogLevelIn <string>] [-LogLevelOut <string>] [-Macfilter <bool>] [-Ndp <bool>] -Node <string> [-PolicyIn <string>] [-PolicyOut <string>] [-Radv <bool>] -Vmid <int> [<CommonParameters>]Parameters
Section titled “Parameters”| Parameter | Type | Required | Description |
|---|---|---|---|
-PveTicket |
PveTicket |
No | Ticket data connection. |
-Delete |
string |
No | A list of settings you want to delete. |
-Dhcp |
bool |
No | Enable DHCP. |
-Digest |
string |
No | Prevent changes if current configuration file has a different digest. This can be used to prevent concurrent modifications. |
-Enable |
bool |
No | Enable/disable firewall rules. |
-Ipfilter |
bool |
No | Enable default IP filters. This is equivalent to adding an empty ipfilter-net<id> ipset for every interface. Such ipsets implicitly contain sane default restrictions such as restricting IPv6 link local addresses to the one derived from the interface’s MAC address. For containers the configured IP addresses will be implicitly added. |
-LogLevelIn |
string |
No | Log level for incoming traffic. Values: emerg, alert, crit, err, warning, notice, info, debug, nolog. |
-LogLevelOut |
string |
No | Log level for outgoing traffic. Values: emerg, alert, crit, err, warning, notice, info, debug, nolog. |
-Macfilter |
bool |
No | Enable/disable MAC address filter. |
-Ndp |
bool |
No | Enable NDP (Neighbor Discovery Protocol). |
-Node |
string |
Yes | The cluster node name. |
-PolicyIn |
string |
No | Input policy. Values: ACCEPT, REJECT, DROP. |
-PolicyOut |
string |
No | Output policy. Values: ACCEPT, REJECT, DROP. |
-Radv |
bool |
No | Allow sending Router Advertisement. |
-Vmid |
int |
Yes | The (unique) ID of the VM. |
Every parameter also binds by property name from the pipeline, so an object with node and vmid properties (the output of Get-PveGuest, for one) fills -Node and -Vmid. Without -PveTicket the cmdlet uses the last connection, see Connection.
Output
Section titled “Output”A PveResponse: the data returned by Proxmox VE is in .Response.data, the outcome in .IsSuccessStatusCode. See Results and Errors.