X-Git-Url: https://git.proxmox.com/?p=pve-docs.git;a=blobdiff_plain;f=pve-firewall-vm-opts.adoc;h=a6c561b2b082158b6ab5f885b4586100aef0b7dd;hp=c510a7b279ced0f28ab37502173a087326cec1c3;hb=7d6078845fa6a3bd308c7dc843273e56be33f315;hpb=78ef35dc78d5dc73c029f1c6e3024e34656e4c2f diff --git a/pve-firewall-vm-opts.adoc b/pve-firewall-vm-opts.adoc index c510a7b..a6c561b 100644 --- a/pve-firewall-vm-opts.adoc +++ b/pve-firewall-vm-opts.adoc @@ -1,44 +1,40 @@ -`dhcp`: `boolean` :: +`dhcp`: `` :: Enable DHCP. -`enable`: `boolean` :: +`enable`: `` :: Enable/disable firewall rules. -`ipfilter`: `boolean` :: +`ipfilter`: `` :: -Enable default IP filters. This is equivalent to adding an empty -ipfilter-net ipset for every interface. Such ipsets implicitly contain -sane default restrictions such as restricting IPv6 link local addresses to -the one derived from the interface's MAC address. For containers the -configured IP addresses will be implicitly added. +Enable default IP filters. This is equivalent to adding an empty ipfilter-net ipset for every interface. Such ipsets implicitly contain sane default restrictions such as restricting IPv6 link local addresses to the one derived from the interface's MAC address. For containers the configured IP addresses will be implicitly added. -`log_level_in`: `(alert | crit | debug | emerg | err | info | nolog | notice | warning)` :: +`log_level_in`: `` :: Log level for incoming traffic. -`log_level_out`: `(alert | crit | debug | emerg | err | info | nolog | notice | warning)` :: +`log_level_out`: `` :: Log level for outgoing traffic. -`macfilter`: `boolean` :: +`macfilter`: `` :: Enable/disable MAC address filter. -`ndp`: `boolean` :: +`ndp`: `` :: Enable NDP. -`policy_in`: `(ACCEPT | DROP | REJECT)` :: +`policy_in`: `` :: Input policy. -`policy_out`: `(ACCEPT | DROP | REJECT)` :: +`policy_out`: `` :: Output policy. -`radv`: `boolean` :: +`radv`: `` :: Allow sending Router Advertisement.