Networking & IPAM
Run IP address management, NAT and firewalls from the panel. IPv4/IPv6 pools with auto subnet math, NAT/port-forwarding, parsed firewall inspection, and a visual host network map.
What it does
The capabilities behind this feature — all self-hosted, all in one panel.
IPAM with auto subnet math
Define IPv4/IPv6 zones; the panel enumerates the CIDR, allocates the next free address transactionally, and the create wizard can inject a static IP or use DHCP.
NAT & port-forwarding
Give private guests internet access via MASQUERADE and expose them with DNAT port-forwards — applied safely through a dedicated, fail-closed agent ruleset.
Firewall inspection
Read and normalise iptables, nftables, ufw, firewalld and pve-firewall into one rule model, persisted and rendered as readable tables with a NAT map.
Network map
A read-only topology of classified bridges (WAN / private / internal) and the guests on each — matched by IP — with the NAT overlay.
Per-guest firewall
Per-guest rules with reusable presets, available to admins and (optionally) to customers in the portal.
How to use it
Up and running in a few steps.
-
Create an IP zone in Settings → IP zones (the panel detects your bridges and does the subnet math).
-
On a host’s Networking page, enable NAT and add port-forwards, then Apply.
-
Use Analyze to parse the host’s live firewall, and the Map tab to see what sits where.
See it in the panel
Real screenshots from NexoVirt.
Related features
Be first to run NexoVirt
Apply for the beta and help shape the roadmap.