Sometimes, it is necessary to create firewall rules to restrict or allow traffic solely based on IP addresses. An IPSet allows us to create firewall rules that may apply to multiple IP addresses or IP subnets. For example, we can create an IPSet to allow access to the Proxmox GUI from only a few limited IP addresses. The following screenshot shows an example of an IPSet to allow the proxmoxgui access from only three IP addresses:
We can create rules based on individual IPs or the entire subnet using the CIDR format in the rules.