09.12.2025
Proxmox Cluster Networking on Hetzner: Using Private Networks + vSwitch Properly
When a Proxmox cluster acts up, it's surprisingly often not Proxmox itself – it's the network: Corosync running over public IPs, storage or VM traffic...
×
Dedicated and cloud architectures, cluster/HA, network design, operations & support – all from one source.
The combination of Proxmox VE and Hetzner offers enterprise virtualization without vendor lock-in – at a fraction of the cost of VMware or cloud VMs.
Proxmox is open source. Hetzner dedicated from ~€40/month. No per-socket licenses like VMware.
Hetzner data centers in Germany and Finland. Your data stays in the EU.
Root access, custom network configuration, no dependency on cloud provider APIs.
Dedicated hardware = consistent performance. No noisy neighbors, no throttling.
Proxmox works as single node or as cluster. For many SMB setups, a properly operated single-node system is sufficient – what matters is backups, monitoring and documented updates.
Budget focus, simpler management, manageable workloads
Professionally operated with backups, restore tests and monitoring
Can be expanded to cluster anytime when requirements grow
Which architecture fits your requirements? We help with the decision.
One dedicated server for smaller workloads or cost focus. Full performance, simple setup, clear responsibility.
3+ nodes for true high availability. Automatic failover, live migration, maximum resilience.
Management/bastion in Hetzner Cloud, workloads on dedicated servers. vSwitch connects both worlds.
Hetzner offers flexible network options – we configure them optimally for your Proxmox cluster.
Private IPs, not internet-routed, L3 links. Ideal for cluster communication and management traffic.
Connects dedicated servers with cloud private networks. Layer-2 connection for seamless communication.
Best practice: Management, cluster/Corosync and storage on separate networks for security and performance.
Web GUI, SSH, API access
Heartbeat, quorum, cluster sync
Ceph, NFS, iSCSI traffic
Proxmox Cluster Manager and HA Manager enable automatic failover on node failures. We configure this for you.
pvecm, naming concept, network requirements
Automatic failover of VMs and containers
3-node recommendation, QDevice for 2-node setups
Fast, simple, ideal for local storage. But: HA/live migration requires shared storage.
Recommended for simple setupsShared storage, HA-friendly, self-healing. More complex, requires dedicated network.
Recommended for HA clustersProfessional operations mean: automation, monitoring, documented processes.
How we work – transparent and structured.
Analysis of existing workloads, network, storage and requirements
Planning the optimal configuration for your requirements
Setup of cluster, network, storage and backup systems
Failover tests, restore tests, live migration validation
Cutover of existing workloads with minimal downtime
Ongoing maintenance, monitoring and support as needed
We set up your Proxmox cluster, document everything and hand over to your team.
Your team handles daily operations, we support with updates, troubleshooting and expansions.
We handle complete operations: monitoring, updates, backups, support – you focus on your business.
09.12.2025
When a Proxmox cluster acts up, it's surprisingly often not Proxmox itself – it's the network: Corosync running over public IPs, storage or VM traffic...
16.06.2025
To protect against data loss, it is important to create regular backups of your Proxmox environment. A cost-effective and secure way to do this is...
Proxmox on Hetzner – Answers to Your Questions
Yes. Proxmox VE can run perfectly fine as a single node and is a typical starting point before potentially clustering later. What matters is proper operations: backups, monitoring, updates, and a solid restore plan.
Single Node means: Everything runs on one host – there's no automatic failover if hardware fails. An HA cluster consists of multiple nodes, so VMs/containers can start on another node in case of failure (if design/storage allows).
For stable quorum and proper HA, 3+ nodes is the standard recommendation. Two nodes are theoretically possible but require an additional quorum concept (e.g., QDevice) and are more error-prone in operation.
Proxmox itself is open source; costs arise mainly from hardware (Dedicated/Cloud) and your desired operational scope (setup, monitoring, backups, support). We calculate transparently based on RAM/CPU/Storage and your requirements (RPO/RTO, SLA, growth).
Our standard is: Cluster/storage traffic doesn't belong on the public internet. We plan a private network (e.g., separate VLAN/private segment) plus firewalling and minimize open management ports.
Yes – at Hetzner this works via vSwitch, which can "connect" Dedicated Servers to Hetzner Cloud Private Networks. This allows Cloud and Dedicated resources to communicate over private links.
At minimum, we separate Management (GUI/SSH/API) from Cluster/Corosync. If Ceph or other storage is added, you ideally need a third, separate storage network – this significantly improves performance and stability.
For Single Node, ZFS is often the sweet spot: fast, stable, simple. For HA clusters, Ceph is interesting because it provides distributed storage – but requires more planning (network, disks, sizing) and "operational discipline".
Rule of thumb: plan for 2-3x your current VM data needs plus backup buffer and growth. With Ceph, replication adds up (more raw capacity needed), for backups factor in retention and change rate.
In practice: Dedicated for workloads/storage + optionally Cloud for bastion/monitoring/edge services. This leverages Hetzner's strengths and keeps the design clean.
We start with IP/hostname planning (important for clustering), install Proxmox VE, harden access and set up network + storage + backup according to your target architecture.
Management access runs via VPN/bastion, not "wildly" open on the internet. Additionally: least-privilege accounts, 2FA where possible, logging and clear emergency access.
Single Node: good Dedicated server + ZFS + solid backup + monitoring. HA: 3+ nodes + separated networks + clear storage concept (Ceph or shared storage).
We define RPO/RTO, set up automated backups, regularly test restores and build in offsite/immutable as needed. The goal is: Restore is a practiced process, not hope.
Single Node: planned in maintenance window with rollback plan. Cluster: Rolling updates node-by-node, so workloads (where possible) keep running.
We do this as a planned cutover: Assessment → Test migration → Performance/restore tests → final move. For VMware exits, details depend heavily on storage/network/guest OS.
The most common: poor network design (everything in one network), missing restore tests and unclear update process. That's exactly why we deliver runbooks + monitoring + clear separation.
Yes – typically as hour packages (for "when it burns" and further development) or as retainer/managed operations (predictable, SLA-based).
CTO, EVA Real Estate, UAE
"I recently worked with Timo and the WZ-IT team, and honestly, it turned out to be one of the best tech decisions I have made for my business. Right from the start, Timo took the time to walk me through every step in a simple and calm way. No matter how many questions I had, he never rushed me. The results speak for themselves. With WZ-IT, we reduced our monthly expenses from $1,300 down to $250. This was a huge win for us."
Data Manager, ARGE, Germany
"With Timo and Robin, you're not only on the safe side technically - you also get the best human support! Whether it's quick help in everyday life or complex IT solutions: the guys from WZ-IT think along with you, act quickly and speak a language you understand. The collaboration is uncomplicated, reliable and always on an equal footing. That makes IT fun - and above all: it works! Big thank you to the team! (translated) "
Timo and Robin from WZ-IT set up a RocketChat server for us - and I couldn't be more satisfied! From the initial consultation to the final implementation, everything was absolutely professional, efficient, and to my complete satisfaction. I particularly appreciate the clear communication, transparent pricing, and the comprehensive expertise that both bring to the table. Even after the setup, they take care of the maintenance, which frees up my time enormously and allows me to focus on other important areas of my business - with the good feeling that our IT is in the best hands. I can recommend WZ-IT without reservation and look forward to continuing our collaboration! (translated)
We have had very good experiences with Mr. Wevelsiep and WZ-IT. The consultation was professional, clearly understandable, and at fair prices. The team not only implemented our requirements but also thought along and proactively. Instead of just processing individual tasks, they provided us with well-founded explanations that strengthened our own understanding. WZ-IT took a lot of pressure off us with their structured approach - that was exactly what we needed and is the reason why we keep coming back. (translated)
Robin and Timo provided excellent support during our migration from AWS to Hetzner! We received truly competent advice and will gladly return to their services in the future. (translated)
WZ-IT set up our Jitsi Meet Server anew - professional, fast, and reliable. (translated)
Whether a specific IT challenge or just an idea – we look forward to the exchange. In a brief conversation, we'll evaluate together if and how your project fits with WZ-IT.
Timo Wevelsiep & Robin Zins
CEOs of WZ-IT







