
Open
Posted
•
Ends in 1 day
Paid on delivery
I already have a Proxmox cluster running and the SDN feature enabled; what I do not have is the routing magic that ties several internal subnets together and hands them off cleanly to my external software firewall. Here is the core of what I need: • My routing protocol of choice is BGP, and I want every SDN-defined subnet announced through it. • Inside Proxmox I rely on Virtual Switches, VRFs and Security Groups. Each element must be configured so that traffic stays segregated yet routable as required. • The end result has to pass traffic end-to-end: VM ↔ virtual switch ↔ VRF ↔ BGP ↔ software firewall, with no asymmetric routes or hair-pinning. Acceptance criteria 1. All internal subnets are visible on the firewall via BGP and can reach the internet and each other according to the Security Group rules. 2. A concise set of CLI commands and/or configuration snippets is provided so I can reproduce the setup on additional nodes. 3. A quick test plan (ping / traceroute / iptables counters) demonstrates that failover and route updates behave as expected. This is a surgical assignment for someone who already lives and breathes Proxmox SDN and dynamic routing; I will be able to spot shortcuts right away. If you are confident you can hand over a rock-solid, documented configuration that meets the above checkpoints, let’s get it done. what is given: 1 edge firewall (installed on a standalone server with proxmox), proxmox cluster with 4 nodes. your task is: check the current network config if everything is correct configured (on network level), setup sdn with 3 vnets and subnets (its already setuped and vms from the same subnetn can ping each other) , get the external traffic routet to the firewall opnsense on the standalone server.
Project ID: 40480953
31 proposals
Open for bidding
Remote project
Active 2 days ago
Set your budget and timeframe
Get paid for your work
Outline your proposal
It's free to sign up and bid on jobs
31 freelancers are bidding on average $528 USD for this job

Hello Dear, I am a BGP and Proxmox expert and I have a Cisco CCNP certificate. I have great experience in various routing protocols such as OSPF, EIGRP, IS-IS and even RIP. Also, I have great hands-on experience in, - Cisco Routers ASR 9k&1k, ISR 4K, 2900, 2800, 878, 888, Switches Nexus 9K, Cat 6500, 3850, 2900 and ASA 5505, 5506x, 5508. - Juniper Routers (M7, M10, MX 480, MX 960) and SRX (300, 500). - Palo Alto 220, 550, 850 and 3200 and Fortigate 40F, 60F, 100E, 200E and 800E Firewalls. - Huawei routers NE-40, NE5000E and Switches Quidway S2700 and S5300. - HP Switches procurve 3500 and procurve 5900. - Mikrotik CCR1036, CCR1009, CCR1700, CCR2204 and RB2011. We can discuss it further, let me know if you are interested. Regards, Ahmed Fakkar
$650 USD in 2 days
7.8
7.8

As a seasoned network and system engineer with over a decade's worth of hands-on experience in Network Administration, SDN Integration, Routing, and BGP, I believe I am the ideal fit for this project. I have your requirement check-listed and deeply understood. As a Cisco Certified Network Professional and having worked with multi-vendor platforms including SDN on Proxmox, I am quite confident that I can meet every single aspect mentioned in the acceptance criteria. Throughout my career, I have designed and implemented many complex network infrastructures for both small and large organizations following the industry's best practices. With exposure to key vendors like Cisco, Fortinet, Pfsense and Mikrotik (among others) -- My passion lies in constructing resilient and efficient networks to ensure that all traffic paths are optimal. My diverse expertise - including VoIP, wireless networks, cybersecurity is valuable as it strengthens my understanding of SDN as an integrated technology within holistic Infrastructures. I'm dedicated to delivering top-notch quality work within given timelines; you can expect concise yet comprehensive documentation of CLI commands or configuration snippets allowing you to duplicate them across additional nodes effortlessly. Together we can create a robust proximity!
$500 USD in 7 days
7.3
7.3

Hi, I understand you already have the Proxmox cluster and SDN enabled, and the missing piece is clean BGP routing from every SDN subnet through virtual switches, VRFs, and security groups into your software firewall. I can help set this up with proper route advertisement, traffic separation, and no messy asymmetric routing or hair-pinning. I will review the current SDN layout, VRF design, firewall peering, and subnet plan, then configure BGP so the firewall sees the right routes and the VMs can reach the internet and each other only where rules allow. I will also provide the CLI/config snippets needed for other nodes, plus a small test plan using ping, traceroute, route checks, and counters to prove route updates and failover work as expected. Which software firewall are you using, and do you already have BGP ASN, peer IPs, and route filtering policy decided? Thanks,
$750 USD in 16 days
6.9
6.9

As an experienced IT professional with a wide range of skills, including expertise in managing cloud platforms like Amazon Web Services and network security, I am confident that I can meet the unique demands of your project. Adapting to new technologies is second nature to me, and I have a proven track record of delivering robust, scalable configurations that align with my client's precise needs.
$400 USD in 1 day
6.8
6.8

Hi, you already have the hard part in place with Proxmox SDN enabled; the remaining work is making route advertisement and return-path behavior deterministic across the 4-node cluster and the standalone OPNsense edge. The real engineering risk here is asymmetric routing between the VRFs and the firewall, especially once failover and inter-subnet policy enforcement are introduced. I’ve built several production systems where the job was less about greenfield setup and more about auditing a live environment, finding the one or two incorrect assumptions, and turning it into a reproducible operating model. In your case, I’d start by validating the current node-level network state, route tables, forwarding behavior, and where the return path breaks. The closest examples in my background are Custom Feature Development & Integration and TikTok AI Livestream Setup, both of which required stepping into existing systems, tracing end-to-end flow, correcting integration boundaries, and handing back concise documentation. I usually structure work like this by separating topology validation, route advertisement, and traffic-path testing. That keeps the BGP visibility problem separate from the forwarding and security-policy problem, which is where most hair-pinning issues hide. I can review the current network layout first and sketch the exact validation path for VM to firewall traffic, plus the failover test plan and reproducible config notes. Thanks, Hercules
$500 USD in 7 days
6.4
6.4

Hi, I can help review and complete your Proxmox SDN deployment, including BGP routing, VNet/VRF validation, and integration with your OPNsense edge firewall. I have experience with: • Proxmox VE clusters and SDN • BGP routing (FRR/BIRD) and dynamic route advertisement • OPNsense and firewall integration • VRFs, VXLANs, Linux bridges, and network segmentation • Routing troubleshooting and failover validation I will audit the existing network configuration across all 4 cluster nodes and the standalone OPNsense server, verify the SDN setup, configure BGP route advertisement for all VNet subnets, and ensure traffic flows correctly between VMs, SDNs, and the internet through the firewall. Documentation and validation tests will be provided upon completion. Best regards, Muhammad Usman
$650 USD in 2 days
5.9
5.9

As a Cybersecurity Consultant with over seven years of experience in the field, I have developed a comprehensive understanding of network administration and security dynamics making me the most appropriate candidate for your Proxmox SDN BGP integration project. My expertise in penetration testing, vulnerability assessments, and security audits gives me a unique advantage to analyze existing systems and set up secure networks that meet strict industry standards. Not only can I precisely assess your current network configuration, but my proactive nature also means I will anticipate and handle any potential security risks before they become problematic. My experience with Kali Linux, Nessus, Acunetix and not limited to these provides me with diverse tools at my disposal to critically analyze your ProxyMox cluster and streamline its network architecture. Building efficient and secure systems has been a core focus of my consultancy work throughout my career. Therefore your need for SDN defined subnets routing seamlessly via BGP is well within my purview. My prior experience working with banks and fintech companies has provided me with an indepth understanding of your project's scale, urgency and sensitivity. With impeccable documentation and straightforward approach to problem solving , consider the job well done when you chose me for this task!
$650 USD in 7 days
5.5
5.5

Hi, ★★★ Proxmox Expert ★★★ 3+ Years of Experience ★★★ I can configure your Proxmox SDN with BGP routing to ensure all internal subnets are properly announced and routed through your firewall. This will include: - Reviewing the current network configuration for correctness. - Setting up SDN with 3 virtual networks and ensuring traffic segregation. - Configuring BGP to announce all internal subnets. - Providing CLI commands and configuration snippets for replication. - Creating a test plan to validate routing and failover. I will handle this with a structured approach, ensuring all elements like Virtual Switches, VRFs, and Security Groups are configured correctly to maintain traffic segregation while allowing necessary routing. Ready to start once you provide access to the Proxmox environment. Thanks!
$750 USD in 5 days
5.3
5.3

Hello, I would love if i get the chance to work on your project. I've worked with Proxmox clusters, SDN, OPNsense, BGP, VRFs, VLANs, and complex routing environments where the biggest challenge was not connectivity but making routing predictable and clean during failures. I can review the existing network design, validate the SDN configuration, advertise the VNET subnets through BGP, and ensure traffic flows correctly between Proxmox and OPNsense without asymmetric routing issues. One thing I'd like to understand: where do you want the BGP peering to terminate, directly on OPNsense or through Proxmox SDN routers with route redistribution toward OPNsense? That choice affects failover behavior and route ownership. Can we connect over a chat to discuss more about the project? Best regards, Dev Singh
$700 USD in 3 days
5.0
5.0

Hi, I am a Linux and network engineer with 8 years of rich experience in infrastructure and network administration. I am familiar with Proxmox VE, Proxmox SDN, BGP routing, VRFs, VNets, Linux networking, OPNsense, network security, firewall routing, VLANs, and network troubleshooting. For this project, the most important thing is to review the current Proxmox cluster networking, correctly configure the SDN VNets/subnets, route external traffic through the OPNsense firewall, and make sure BGP announces the internal subnets cleanly without asymmetric routing or broken isolation. I'm an individual freelancer and can work on any time zone you want. Please contact me with the best time for you to have a quick chat. Looking forward to discussing more details. Thanks. Emile.
$250 USD in 7 days
3.5
3.5

The 3-5 hour estimate is realistic if the cluster access and OPNsense access are ready. The main risk here is not creating the VNets, since same-subnet VM ping already works, but making the VRF/BGP path clean so return traffic does not bypass the intended route or hairpin through the wrong node. I’d first check bridge, SDN zone/VNet/subnet, VRF and firewall rules, then validate OPNsense BGP peering and route visibility from both sides. After that I’d leave you with the exact CLI/config snippets and a short test plan using ping, traceroute, route table checks and firewall counters so the setup can be repeated on the other nodes without guessing.
$250 USD in 7 days
2.6
2.6

Hi, I understand your need for a precise and flawless integration of BGP with Proxmox SDN to ensure all internal subnets are properly routed through your software firewall while maintaining strict traffic segregation. With extensive experience in Linux networking, Proxmox SDN, VRFs, and BGP, I am confident in delivering a solution that fits your requirement for clean, end-to-end routing without asymmetry or hair-pinning. I will configure the virtual switches, VRFs, and security groups for optimal traffic segregation and seamless BGP announcements of all SDN subnets, ensuring they are visible on your firewall and correctly routed. Additionally, I will provide clear CLI command sets and configuration snippets for easy replication across nodes, along with a concise test plan for validating routing, failover, and security policies. I propose to complete this task within 5 days, ensuring you receive a rock-solid, documented configuration that meets all your acceptance criteria. Could you share your current Proxmox version and the software firewall in use to tailor the configuration precisely? Best regards,
$555 USD in 27 days
2.4
2.4

Hi there, I just read your posting. It sounds like you need an expert in Proxmox SDN with a deep understanding of BGP routing to connect your internal subnets seamlessly to your external firewall. With my extensive experience in networking, particularly with Proxmox, I can ensure that every SDN-defined subnet is properly configured and announced via BGP. I will meticulously set up Virtual Switches, VRFs, and Security Groups to maintain traffic segregation while enabling routability as needed. As part of the project, I will provide you with clear CLI commands and configuration snippets to replicate the setup across additional nodes. Additionally, I’ll create a quick test plan using ping, traceroute, and iptables counters to confirm that failover and route updates function as expected, ensuring your setup is robust and reliable. Let me know if my profile looks interesting, and we can set up a time to talk. Best regards, Elijah M.
$450 USD in 5 days
0.4
0.4

Hello, As an experienced tech guru who breathes and lives Linux, I have a wealth of knowledge that directly aligns with what you need for your Proxmox SDN BGP Integration project. My vast experience in AI and Full Stack Development gives me a unique perspective that perfectly complements your project needs. I’ve worked extensively with SDN and Fault-tolerant infrastructure on diverse projects, enabling me to develop refined skills in Virtual Switches, VRFs, and Security Groups - three key components for your project's seamless routing. Using my deep grasp of Artifical Intelligence, I can create the elegant, scalable solution you seek for every aspect of your routing using the BGP protocol. I understand that you are looking for not just someone to complete this project but someone who can leave you with an impeccable configuration. My dedication to clean, maintainable code and my focus on long-term sustainability will ensure that I provide you with precisely what you're after - rock-solid configuration, clear steps to reproduce it elsewhere, and a reliable testing plan to pinpoint any glitches. So if you’re seeking expertise that practically knows Proxmox like the back of their hand, let’s start getting things done right away! Thanks!
$250 USD in 9 days
0.0
0.0

Hey there, I'm Vishal Maharaj, a Computer Security and Network Administration expert with 25 years of experience based in Perth, Australia. I am highly passionate about taking on your Proxmox SDN BGP Integration project. I understand the core requirements of the project, including configuring BGP for SDN-defined subnets, setting up Virtual Switches, VRFs, and Security Groups for traffic segregation, and ensuring seamless end-to-end traffic flow through VMs, switches, VRFs, BGP, and the software firewall. I would approach the project by meticulously configuring BGP for all internal subnets, ensuring proper routing and connectivity while providing concise CLI commands and a test plan for validation. Let's discuss this further in detail. Please feel free to initiate the chat. Cheers, Vishal Maharaj
$500 USD in 5 days
0.0
0.0

Hi there, I reviewed your Proxmox SDN BGP integration requirements carefully, and I can help you build a clean routed path from VM → virtual switch → VRF → BGP → software firewall without asymmetric routing or hair-pinning. Why I’m a good fit: • Strong hands-on experience with Proxmox SDN, Linux networking, VRFs, bridges, routing tables, and firewall policy separation • Practical BGP experience with route advertisement, failover behavior, route filtering, and software firewall handoff • Focus on reproducible CLI/config snippets, not undocumented one-off changes I have experience with Proxmox, FRRouting/BGP, Linux iproute2, iptables/nftables, VLAN/VRF design, and segmented network security setups. My approach: • Validate your existing SDN layout and firewall peering model • Configure route advertisement and segregation cleanly • Provide concise commands plus a ping/traceroute/counter-based test plan I can start immediately and would be happy to discuss the setup in detail. Best regards,
$700 USD in 4 days
0.0
0.0

The bid amount and timeline above are rough placeholders. Once we walk through your current setup we can give you a firm number. We read through this carefully. You've got Proxmox SDN running with Virtual Switches, VRFs, and Security Groups already in place - what's missing is the BGP layer that makes those subnets visible to your external software firewall and routes traffic end-to-end without asymmetric paths or hair-pinning. You want it documented so you can replay it on new nodes, and you want a test plan that actually proves it works. Here's how we'd approach this: - BGP peering: Stand up FRRouting on the Proxmox nodes and configure BGP sessions toward your firewall, with route-maps and prefix-lists to control exactly which SDN subnets get announced and nothing extra leaks out. - VRF and Virtual Switch wiring: Bind each VRF to the correct Linux bridge or OVS port so traffic stays segregated by default but routes across VRF boundaries where your Security Group rules permit it. - Firewall side config: Set up the BGP neighbor on your software firewall (OPNsense, VyOS, pfSense, or whichever you're running) and confirm bidirectional advertisement so internet return traffic follows the right path back. - Asymmetric route audit: Walk the routing table on each node, verify next-hop consistency, and fix any hair-pinning before sign-off. - Docs and test plan: Deliver reusable CLI snippets plus a short test sequence covering ping, traceroute, and iptables/nftables counters to confirm failover behaves as expected. After a short scope chat we'll put together a written proposal covering deliverables, timeline, and a firm price. Want to jump on a quick call this week? Knowing your firewall platform and node count will help us scope it precisely. Best, 96 Studio
$506 USD in 5 days
0.0
0.0

Hi, I can set up your Proxmox cluster with BGP routing to seamlessly connect your internal subnets to your external software firewall. My experience with Proxmox SDN, virtual switches, VRFs, and security groups ensures that I can deliver a clean, segregated routing configuration that meets your requirements. The implementation will involve configuring your existing infrastructure to announce all SDN-defined subnets through BGP. I’ll ensure end-to-end traffic flow from VMs through to the firewall while preventing asymmetric routing and hair-pinning. You'll receive a set of concise CLI commands and configuration snippets for easy replication across additional nodes. To verify the setup, I will provide a straightforward test plan that includes ping, traceroute, and iptables counters, ensuring everything operates as expected. Let’s get this configuration right and make your network robust and reliable. Thank you.
$537 USD in 7 days
0.0
0.0

Hello, I am a Network Engineer with experience in network operations, troubleshooting, routing, switching, firewall technologies, and infrastructure support. For this project, I will first perform a detailed review of the existing Proxmox cluster, SDN configuration, VNETs, VRFs, routing tables, and OPNsense firewall setup to ensure the network design is correct. My approach is to identify any routing or configuration issues, validate BGP route advertisements, ensure proper traffic flow between VMs and the firewall, and provide clear documentation of all changes. I focus on structured troubleshooting, thorough testing, and delivering reliable solutions rather than quick fixes. I am confident in analyzing complex network environments and can provide a documented, reproducible configuration along with validation tests to ensure the solution meets your requirements.
$500 USD in 7 days
0.0
0.0

Hello, I reviewed your project requirements and understand that you need help with integrating BGP into your Proxmox SDN setup, specifically in tying internal subnets together and connecting them to your external software firewall. I have experience with Linux and network administration, which are relevant skills for this project. I can help you achieve the following outcomes: • Configure BGP to announce every SDN-defined subnet. • Setup Virtual Switches, VRFs, and Security Groups to keep traffic segregated yet routable. • Ensure that traffic flows seamlessly from VMs to virtual switch to VRF to BGP to the software firewall, without any asymmetric routes or hair-pinning. Before starting, I would like to clarify a few things: • What is the current network configuration, and are there any specific requirements for the setup? • What is the timeline for completing this project? My approach will be as follows: 1. Analyze the current network configuration to identify any potential issues. 2. Configure the SDN with 3 VNets and subnets, ensuring that VMs from the same subnet can communicate. 3. Route external traffic to the OpnSense firewall on the standalone server. 4. Provide a concise set of CLI commands and configuration snippets for reproducing the setup on additional nodes. 5. Develop a test plan using ping, traceroute, and iptables counters to demonstrate failover and route updates. I understand that this is a complex task requiring expertise in Proxmox SDN and dynamic routing. I am confident in my ability to deliver a rock-solid, documented configuration that meets your acceptance criteria. Could you provide more details about your specific goals and any deadlines you have in mind? Thank you for considering my proposal. I look forward to discussing the project with you. Best regards, bhargav922002
$525 USD in 3 days
0.0
0.0

Wallisellen, Switzerland
Payment method verified
Member since Sep 2, 2022
$250-750 USD
$250-750 USD
$30-250 USD
$250-750 USD
$30-250 USD
$30-250 USD
₹75000-150000 INR
$30-250 CAD
₹12500-37500 INR
₹600-1500 INR
₹12500-37500 INR
₹600-1500 INR
₹600-20000 INR
₹75000-95000 INR
€12-18 EUR / hour
₹1500-12500 INR
$250-750 USD
$30-250 CAD
$250-750 USD
$14-120 NZD
$250-750 AUD
₹12500-37500 INR
$250-750 USD
₹600-1500 INR
$30-250 USD