I got a brand new hEX S and a CSS326.
I got a Proxmox-Server with 3 NICs. One NIC should be used for webservers and forbid any connections to my LAN, therefore it has to be in a VLAN.
I want my "normal" LAN without VLAN just running. Thus, I can replace in emergency cases the mikrotik with another router and everything will run without VLANs.
Eth1 of the hEX is connected to my "modem", better "router" from my ISP. I forward every port to the mikrotik. This works and worked before. My LAN is in 192.168.0.1/24 (this is the IP of my hEX).
Eth5 is connected to the CSS.
At first I want 2 VLANs:
- VLAN10 (192.168.10.1/24) on eth4. this should be only accessible by three LXCs (IPs: 192.168.10.10-12) connected in Port 17 of the CSS) and to the internet. How can I prevent a loop to eth5?
- VLAN20 (192.168.20.1/24) on eth5 and probably eth2. This should be used for my printers and WLAN. Therefore, a VLAN-routing to my normal LAN should be possible.
I tried but I can't get it running (better: I failed hard..) and now I'm just back at 0 to start from scratch again.
What do I have to do in RouterOS, SwOS and PVE? Is a bridge in the hEX neccessary?
Please help me with the GUI, not with CLI

This is my setup in the RouterOS:
and this is the Switch:
And here you can see my PVE-Setup:
But the Test-LXC doesn't get a DHCP-IP nor can it ping google.com