Book Image

Proxmox Cookbook

By : Wasim Ahmed, Ravi K Jangid
Book Image

Proxmox Cookbook

By: Wasim Ahmed, Ravi K Jangid

Overview of this book

Proxmox VE's intuitive interface, high availability, and unique central management system puts it on par with the world’s best virtualization platforms. Its simplicity and high quality of service is what makes it the foremost choice for most system administrators. Starting with a step-by-step installation of Proxmox nodes along with an illustrated tour of Proxmox graphical user interface where you will spend most of your time managing a cluster, this book will get you up and running with the mechanisms of Proxmox VE. Various entities such as Cluster, Storage, and Firewall are also covered in an easy to understand format. You will then explore various backup solutions and restore mechanisms, thus learning to keep your applications and servers safe. Next, you will see how to upgrade a Proxmox node with a new release and apply update patches through GUI or CLI. Monitoring resources and virtual machines is required on an enterprise level, to maintain performance and uptime; to achieve this, we learn how to monitor host machine resources and troubleshoot common issues in the setup. Finally, we will walk through some advanced configurations for VM followed by a list of commands used for Proxmox and Ceph cluster through CLI. With this focused and detailed guide you will learn to work your way around with Proxmox VE quickly and add to your skillset.
Table of Contents (18 chapters)
Proxmox Cookbook
Credits
About the Author
About the Reviewers
www.PacktPub.com
Preface
Index

Integrating a Suricata IPS


It is possible to integrate Suricata Intrusion Prevention System (IPS) into the Proxmox firewall. Suricata is an excellent high-performing IPS and Network Security Monitoring engine. Suricata is a multithreaded IPS which allows load balancing on all the available processors of a system that Suricata is operating on.

Note

For more details, please visit the official Suricata site at http://suricata-ids.org.

Getting ready

Suricata needs to be installed and configured through a CLI only. Log in to the Proxmox node through SSH or a console. This needs to be done individually on all Proxmox nodes that require this feature.

How to do it…

  1. Before installing Suricata, ensure that the Proxmox node is up to date using the following commands:

    # apt-get update
    # apt-get dist-upgrade
    
  2. Install Suricata using the following command:

    # apt-get install suricata
    
  3. Enable Suricata for a VM by opening the firewall configuration of the VM in /etc/pve/firewall/<vm_id>.fw and add the following...