Questions tagged [opnsense]

32 questions
0
votes
0 answers

YouTube app not working with squid. What urls to bump exclude?

I have squid running with SSL Bump. The rest of the squid settings are basically defaults. I can access YouTube just fine from a browser but the android app is not working. I've already excluded these from SSL Bump with no…
J'e
  • 83
  • 9
0
votes
1 answer

TCP communication to internet broken - no SYN-ACK received

Given following network setup: Debian bullseye host (Proxmox VE) -> OPNsense firewall doing NAT -> DSL modem (connected via PPPoE) -> Internet The host isn't able to establish a tcp connection to any host in the internet. I tried to reach different…
0
votes
0 answers

server remot access using VPN FW - TUN vs TAP

I'm trying to improve my home Firewall set up and I'm trying to figure out the best VPN configuration. GOAL: In order to reduce the open ports of my home webserver I thought to use SSH and webmin service only over a VPN connection and keep these…
gipsea
  • 1
0
votes
2 answers

NFS Mouting Failing due to illegal port

I have a VM machine that has a public IP interface and a private IP interface. The private interface is assigned 192.168.50.78. Then I have a dedicated host that acts as my "router" using private IP 192.168.50.1 and this is, therefore, my gateway…
Granwille
  • 51
  • 5
0
votes
0 answers

2 VLANS on 1 Physical OpnSense Ethernet Port (connected to wifi access point) and 1 Captive Portals on each VLAN

I want to create a captive portal with different restriction per user account/role (student and teacher). The Teacher can have unrestricted access. The Student have restricted access. (only defined/allowed websites are accessible). But upon my…
0
votes
0 answers

Wireguard site-to-site routing opnsense

I have Wireguard running in docker container (wg-easy) on VPS, the other machine connected is home server running opnsense. VPS: local network is 10.0.0.0/24 local address is 10.0.0.73 Wireguard: local network 30.8.0.0/24 local address 30.8.0.1…
jux1e
  • 1
0
votes
1 answer

Routed IPv6 on internal bridge with virtualized OPNsense router

I'm struggling with adding IPv6 to the internal bridge of my setup, here is what I have: ┌───────────────────────────────────────────────────────────────────────────────────────────────────────────────┐ │ …
Andreas Piening
  • 173
  • 1
  • 9
0
votes
1 answer

"DNS address could not be found" in OPNsense using OpenVPN configured for ProtonVPN

I'm trying to route the WIFI and OPT nets from my OPNsense box to my VPN. The LAN port is connected to another router and passes directly to my WAN (for greater speed and less privacy). When I connect to the OPNsense WIFI and browse to a variety of…
guttermonk
  • 151
  • 8
0
votes
0 answers

Movistar and OPNSense

I have a web server on my ip 192.168.1.100 under DMZ ... with a Movistar WAN I can access from the local network, I can access from the domains assigned to it and everything without problems, I can also access from other external connections of…
KatiaSisHost
  • 121
  • 2
0
votes
0 answers

How can i connect OPNsense router to Mikrotik Switch

I've encountered this situation where I'm to access the switch from my router: Here is what i have set: Lan (DHCP 192.168.50.1 , DHCPIPV6) WAN (DHCP 192.168.80.1,DHCPIPV6) Mikrotik (DHCP 192.168.80.1,DHCPIPV6) [connected to Mikrotik network…
0
votes
1 answer

OPNSense logs every second: postfix/smtpd OTP unavailable because can't read/write key database /etc/opiekeys: Permission denied

I am using Postfix on OPNSense as a Smart Host for my local servers to relay mail for notifications. When I first set it up, it would spam System: Log Files: General with the following message: postfix/smtpd[67716] OTP unavailable because can't…
JVal90
  • 129
  • 2
0
votes
0 answers

Unbound not returning A records over IPv6

I recently replaced my pfSense installation with OPNsense and have been struggling a bit with the Unbound installation. In short, it's IPv6 enabled and everything works well (both IPv6 and IPv4) in general. However, it seems to struggle with DNS…
vpetersson
  • 861
  • 1
  • 11
  • 22
0
votes
0 answers

OpnSense: Interface Offline

I'm setting up a newtwork @ home and would like to keep Wired Devices and Wireless Devices separated. My main network interface is on em0 - 10.0.0.1/24 I've created a VLAN on em5 - 1.0.100.1/24 This Splitting into my LAN have both same Firewall…
Gianni
  • 1
  • 2
0
votes
1 answer

OPNSense and Unifi RADIUS issue

I have an OPNSense firewall and a Unifi controller I am trying to enable Radius authentication and Radius Vlan assignment On the unifi side I have done the following Created an SSID Created A radius profile Created a network On the OPNSense side I…
0
votes
0 answers

How to implement firewall to grant network access for VPN users as-needed (per-user principle of least privilege, OpenVPN)

How can I setup OpenVPN in conjunction with my firewall in such a way that my VPN users' traffic is DROPed by default to all network resources, and only ACCEPTed through the firewall if that user requires access to the specific resource? I have an…
Michael Altfield
  • 739
  • 2
  • 8
  • 23