How to create users and set permissions in Proxmox

Ғылым және технология

Running with just the root user is a bad idea for security. In this video I go over what can be controlled with permissions, how to use permissions and a few examples of setting permissions.
00:00 Intro
00:10 What can be controlled with permissions
02:03 Permissions settings overview
02:21 Realms
03:36 Users
04:01 Groups
04:35 Creating user permissions
05:15 Pools
06:30 Roles
08:10 Example #1 Adding an Admin
10:17 Example #2 Creating a user that can only access VMs in a pool
13:57 Giving a user access to storage with a Quota
15:35 Example #3 Creating a user that only has console access to one VM
17:30 Example #4 Creating a group with a shared pool of VMs

Пікірлер: 17

  • @KunouJS
    @KunouJS8 ай бұрын

    My go-to guy right here for most Proxmox tutorials. 👍

  • @shamikpatro
    @shamikpatroАй бұрын

    This is such a well done video! I appreciate all the examples you put in that demonstrated specific scenarios. Very helpful!

  • @jhamsyt
    @jhamsyt Жыл бұрын

    As someone new to building a home lab, thank you very much for breaking this down for us! Great work!

  • @michaelcooper5490
    @michaelcooper549011 ай бұрын

    Really very good information, I actually needed this because I wasn't sure how to limit the users. Thank you this was very well done.

  • @JohnDoe1999-lg7mh
    @JohnDoe1999-lg7mh3 күн бұрын

    Another great video. Thanks for sharing your knowledge with us. Watched your other videos. Trying to convert one of my physical computers to a VM (Windows) and followed your video. First set of attempts have failed. Starting again using disk2vhd64. At the conversion to qcow2 stage. Was failing with error about not being able to find the drive when I start the VM. So something about the file is messed up or such. Have to learn more about the storage types and limitation as when I was trying to copy over the VHD file to Proxmox, it would only copy 67.x GB and then complain that it ran out of space and fail. Had to save it to an NFS share. I added another SSD 480GB as a test.

  • @melvinstephens2435
    @melvinstephens24357 ай бұрын

    Great Video, Thank you!

  • @MerwinPinto-vy8nc
    @MerwinPinto-vy8nc3 ай бұрын

    wonderful Explanation !

  • @ArthursHD
    @ArthursHD3 ай бұрын

    Nice! I'm searching for how to set PAM Linux permissions.

  • @danielmaier8299
    @danielmaier8299 Жыл бұрын

    A video how to set up a automation from a Weborder for a VM. How to enter automatically IP from a pool, memory, disk and so on. Some talking about terraform, but a lot think it is to heavy.

  • @kramtwkramtw472
    @kramtwkramtw472 Жыл бұрын

    What is would be the best way to allow random users to access your cloud services? Thanks

  • @ElectronicsWizardry

    @ElectronicsWizardry

    Жыл бұрын

    By could services do you mean VMs or containers on Proxmox? This depends on the setup and if you have multiple nodes in a cluster. For basic setups, I'd probably create a blank vm/container template and a pool for the customer. Then the customer would be allowed to clone the vm in their pool and install the os they want. Using a template is the only way I can see to keep the customer from connecting to your management network. If you want to get fancy, you can write a script to read data from /etc/pve and use that to send an alert if a customer has too many vms, or log how much cpu power/memory the user is using.

  • @Monarchias

    @Monarchias

    Жыл бұрын

    ​@@ElectronicsWizardry Thank you kind Sir! I'm going to fiddle with this. By network intf. and/or vswitch of proxmox, what if I physically have an intel1000 eth. 4ports, how should I add it? Virtualized e1000 selection can cause any problem?

  • @ElectronicsWizardry

    @ElectronicsWizardry

    Жыл бұрын

    @@Monarchias Normally the physical network card is connected to a virtual bridge in proxmox. Then the VMs have their network card attached to the network bridge. Proxmox permissions don't let you select which of networks bridges a user has access to. You can use other methods to give networks to a vm like pcie passtrhough(sr-iov would work here, but I think the e1000 is too old for that). The e1000 should work fine in Proxmox and I have used that nic many times in the past

  • @RomanShein1978
    @RomanShein1978 Жыл бұрын

    I like your content, yet I don't perceive the topic as relevant for your target audience (home server enthusiasts). I want to suggest making content about zfs management. There are still gaps to fill. For instance: 1. How to use host ZFS for user data storage: personally a long time ago I had a case of multiple virtual disk corruptions at once (probably, due to improper shutdown, fortunately only boot drives got corrupted, not user data). Since then I opted for a Samba container with a bind mount to a real dataset in an actual pool as a user data storage. It works well for me. 2. ZFS GUI. My personal choice is Napp-it, yet I believe you may know a better alternative. 3. Running ZFS pool made of partitions. Allows for efficient and flexible use of mixed-size HDDs and SSDs. The one may create not one, but several pools with different levels of redundancy (for HDDs) . I use the same SSD as a boot drive, as well as l2arc, special-vdev and even SLOG for a couple of HDD pools (I believe it is a justified use case when you have a single nvme and the rest of SSDs in special-vdev are SATA).

  • @ElectronicsWizardry

    @ElectronicsWizardry

    Жыл бұрын

    That’s for the feedback. I knew the permissions video was focused on the larger setups that most home setups but wants to see how it would do. Thanks for the ideas for a zfs video. I’ll likely add these points to a zfs video in the future.

  • @AdrianuX1985
    @AdrianuX1985 Жыл бұрын

    +1

  • @ozzyla1234
    @ozzyla1234 Жыл бұрын

    Gday, Enjoy your videos and have found them helpfull in my move from esxi to Progmox.I have been looking for a guide for integrating a network UPS to proxmox, I want to setup a safe shutdown for my server when power go's out and is running on USP battery. Be great if you cold do one.

Келесі