systemd-networkd и proxmox не работает NAT?
root@:/etc/systemd/network# tail -n +1 *
==> 50-default.network <==
# This file sets the IP configuration of the primary (public) network device.
# You can also see this as "OSI Layer 3" config.
# It was created by the OVH installer, please be careful with modifications.
# Documentation: man systemd.network or https://www.freedesktop.org/software/systemd/man/systemd.network.html
[Match]
MACAddress=ac:1f:6b:6a:11:11
[Network]
Description=network interface on public network, with default route
DHCP=no
Address=52.168.204.154/24
Gateway=52.168.204.254
#IPv6AcceptRA=false
NTP=ntp.ovh.net
DNS=127.0.0.1
DNS=213.186.33.99
DNS=2001:41e0:3:263::1
Gateway=2001:41e0:0800:12ff:ff:ff:ff:ff
IPForward=yes
[Address]
Address=2001:41e0:0800:129a::/64
[Route]
Destination=2001:4120:0800:12ff:ff:ff:ff:ff
Scope=link
==> 50-public-interface.link <==
# This file configures the relation between network device and device name.
# You can also see this as "OSI Layer 2" config.
# It was created by the OVH installer, please be careful with modifications.
# Documentation: man systemd.link or https://www.freedesktop.org/software/systemd/man/systemd.link.html
[Match]
MACAddress=ac:1f:6b:6a:11:11
[Link]
Description=network interface on public network, with default route
MACAddressPolicy=persistent
NamePolicy=kernel database onboard slot path mac
#Name=eth2 # name under which this interface is known under OVH rescue system
#Name=eno3 # name under which this interface is probably known by systemd
==> 80-vmbr1.netdev <==
[NetDev]
Name=vmbr1
Kind=bridge
==> 81-vmbr1.network <==
[Match]
Name=vmbr1
[Network]
Address=0.0.0.0
#IPForward=true
#IPMasquerade=true
iptables -t nat -A POSTROUTING -o eno3 -j MASQUERADE
iptables -t nat -A POSTROUTING -s '10.0.0.0/8' -o eno3 -j MASQUERADE
/etc/pve/qemu-server/100.conf
net0: virtio=00:11:22:33:44:56,bridge=vmbr1
echo 1 > /proc/sys/net/ipv4/ip_forward
root@:/etc/systemd/network# ip a
1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN group default qlen 1000
link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
inet 127.0.0.1/8 scope host lo
valid_lft forever preferred_lft forever
inet6 ::1/128 scope host
valid_lft forever preferred_lft forever
2: eno1: <BROADCAST,MULTICAST> mtu 1500 qdisc noop state DOWN group default qlen 1000
link/ether ac:1f:6b:6a:11:13 brd ff:ff:ff:ff:ff:ff
3: eno2: <BROADCAST,MULTICAST> mtu 1500 qdisc noop state DOWN group default qlen 1000
link/ether ac:1f:6b:6a:11:17 brd ff:ff:ff:ff:ff:ff
4: eno3: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc mq state UP group default qlen 1000
link/ether ac:1f:6b:6a:11:11 brd ff:ff:ff:ff:ff:ff
inet 52.168.204.154/24 brd 52.168.204.255 scope global eno3
valid_lft forever preferred_lft forever
inet6 2001:41e0:900:129a::/64 scope global
valid_lft forever preferred_lft forever
inet6 fe70::ae1f:6eff:fe7a:5dfc/64 scope link
valid_lft forever preferred_lft forever
5: eno4: <BROADCAST,MULTICAST> mtu 1500 qdisc noop state DOWN group default qlen 1000
link/ether ac:1f:0b:6e:5f:fd brd ff:ff:ff:ff:ff:ff
6: vmbr1: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc noqueue state UP group default qlen 1000
link/ether a2:df:e3:b8:0f:8d brd ff:ff:ff:ff:ff:ff
inet 10.0.0.1/8 brd 10.255.255.255 scope global vmbr1
valid_lft forever preferred_lft forever
inet6 fe80::a0df:b3ff:feb8:b8d/64 scope link
valid_lft forever preferred_lft forever
7: docker0: <NO-CARRIER,BROADCAST,MULTICAST,UP> mtu 1500 qdisc noqueue state DOWN group default
link/ether 02:42:b2:87:b3:e6 brd ff:ff:ff:ff:ff:ff
inet 172.17.0.1/16 brd 172.17.255.255 scope global docker0
valid_lft forever preferred_lft forever
8: tap100i0: <BROADCAST,MULTICAST,PROMISC,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast master vmbr1 state UNKNOWN group default qlen 1000
link/ether d2:a6:6d:b6:20:7a brd ff:ff:ff:ff:ff:ff
9: tap101i0: <BROADCAST,MULTICAST,PROMISC,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast master vmbr1 state UNKNOWN group default qlen 1000
link/ether 33:67:b3:e8:f9:9f brd ff:ff:ff:ff:ff:ff
root@:/etc/systemd/network# ip ro
default via 52.168.204.254 dev eno3 proto static
10.0.0.0/8 dev vmbr1 proto kernel scope link src 10.0.0.1
52.168.204.0/24 dev eno3 proto kernel scope link src 52.168.204.154
172.17.0.0/16 dev docker0 proto kernel scope link src 172.17.0.1 linkdown