Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Topics - mimugmail

#1
General Discussion / community repo updated ...
November 01, 2025, 05:52:18 PM
Hi,

after long time I updated all port to their latest versions, also Unifi9 to 9.5 and Adguard plugin now at version 1.16 with the latest go build. Also the single-repo with plugins only is updated with latest Adguard.

Have fun!

Michael
#2
General Discussion / unifi9 in community repo
March 07, 2025, 08:58:39 PM
There is now a new plugin, os-unifi9-maxit.

You need to take a backup inside unifi controller and export it.

Then stop unifi plugin via opnsense, remove the plugin via System : Firmware : Plugins

Install the new plugins, start the service and pray (or import).

If it doesn't start, maybe wipe the java folder:

stop the plugin

remove the plugin

vial cli: rm -f /usr/local/share/java/unifi/data/

install plugin

start plugin
#3
General Discussion / Updates to community repo
March 06, 2025, 07:22:07 AM
Hi,

As you also might experienced problems with community repo since 25.1, all problems should be gone now (since yesterday). Today I also updated the adguard plugin to latest version, updates to dracula theme, nextdns and speedtest-plugins where we had couple of PRs hanging for ages.

The repo-single which I set up to host only adguard so user can use community repo and zenarmor got extended to all plugins not requiring any extended pkg's.

Hope everything goes well ...

Today I kicked unifi9 build, maybe we see a new plugin for unifi9 with no migration path except backup/delete/upgrade/restore in order to not break exisiting unifi8 installs (me coward). :)

Best,

Michael
#4
Hi,

As usual the latest and greatest packages were updated, also the latest Unifi 8.6.9 and AdGuard 0.107.55.

In addition, as many users complain about problems when running community repo AND zenarmor repo, but also all of those users just use AdGuard, I created a separate repo, just containing AdGuard and nothing more. So if you want to switch, head over to you console, remove mimugmail.conf and download mimugmail-single.conf:

https://www.routerperformance.net/opnsense-repo/

Maybe some of you just use AdGuard and one more plugin but also zenarmor, then just ping me on github repo and I'll check it. But repo-single wont contain ANY pkg's besides plugins without dependencies.

Hopefully all of you confused now :)

Best,

Michael
#5
Hi,

if you are on 24.7 you now can also enable the community repo as usual on https://www.routerperformance.net/opnsense-repo/

There wont be any new updates to 24.1 and FreeBSD13 as the build server was already updated.
Please test if you can. Unifi and AdGuard runs fine, but maybe I missed something at some point.

Thx!
Michael
#6
No changes, just replaced the binary, maybe you have to stop and start the service.
#7
Hi guys,
as there is no real stable way to upgrade the unifi pkg we have a separate plugin. So, if you still stick to os-unifi7-maxit you'll stick to unifi7 forever (or until it doesn't compile anymore).
If you want to upgrade:
1. Go to Services : Unifi : General -> disable it
2. Check the process is not running anymore
3. Head over to System : Firmware : Plugins and install os-unifi-maxit (it will remove the old one)
4. Go to Services : Unifi : General -> enable it
5. Pray :)
Have a nice one ..
Michael
#9
EDIT: This only affects you if you have enabled my comunity repo: https://www.routerperformance.net/opnsense-repo/

Hi,

for a couple of months there were no updates on the community repo, cause of the fact that FreeBSD updated the unifi7 port with v7.4 that it get's bundled with mongodb4.4 instead of mongodb3.6 (which is EoL). The problem is, that there is no upgrade path between 3.6 to 4.4 and Unifi solved this in Windows/Linux a different way than the FreeBSD guys :)

So, in my tests I failed 100% of all upgrade from 7.3 to 7.4 or 7.5, which means, after upgrade you can use your wifi but can't login into the controller. To fix this, you need download a backup of Unifi and head over to CLI:



service unifi stop

pkg remove os-unifi7-maxit unifi7

rm -rf /usr/local/share/java/unifi/*

pkg install os-unifi7-maxit



Browse to your controller and restore from backup.



If you know a better way, I'm happy for any help.

Right now I need to do this cause of the openssl111 trouble beginning with 23.7.7 (where FreeBSD is responsible, not OPNsense).
#10
Hi,

as a couple of users complain about removing the custom options I added a new plugin to the community repo:
https://www.routerperformance.net/opnsense-repo/

Please be aware that it won't work on install pre-21.7! :)

#11
Maybe you missed it:

https://www.ntop.org/guides/ntopng/third_party_integrations/opnsense.html

Guys from Ntop build an own repo and plugin where you can use the latest and greatest build and you can choose to run community version or add your license key and run enterprise ntopng
#12
Dear all,

Within the last weeks I started a new project: OPNsense community repository

What is it all about?

A couple of packages don't really make sense on a Firewall platform like Java or MySQL DB, but may be important for some individuals trying to achieve own goals.
It starts with hosting Unifi Controller on the Firewall itself cause of missing extra device and goes over to InfluxDB and Grafana on the local system.

Since these dependencies like JDK are too big or may be only distributed via binary blob there is no way they will find their way into core and makes totally sense.
To overcome this quality assurance you can now load an external repository which will also allow the addition of plugins also with custom fields.

But finally this will have a couple of drawbacks like OpenSSL-only and limited time to test every update.
If you still feel brave and want to join you can go over here and start on:

https://www.routerperformance.net/opnsense-repo/

Hav fun :)
#13
Servus,

habe die letzten Wochen ein neues Projekt gestartet: ein freies OPNsense community repository

Worum gehts und was ist das?

Einige Pakete wie z.B. Java oder MySQL machen auf einer Firewallplattform nur bedingt Sinn, sind für den ein oder anderen Anwender aber essenziell.
Das beginnt z.B. mit dem Unifi WLAN Controller für den man keine eigene VM bereitstellen kann, bis zu InfluxDB und Grafana, denn das müsste ebenfalls ausgelagert werden wenn man sich schicke Graphen mit Telegraf einrichten mag.

Da dafür teilweise Java oder auch einige andere große Pakete mit Abhängigkeiten zwingend vorausgesetzt werden, ist die Wahrscheinlichkeit dass sie in OPNsense core kommen gleich null.
Das ist an sich auch absolut OK, aber für manche Anwendungsfälle einfach umständlich.
Großer Vorteil ist hier ganz klar, dass die Qualitätskriterien von OPNsense nicht gelten, d.h. es kann und wird auch Plugins mit Freitext geben wo man einfach seine altbewährte Linux Konfiguration pasten kann.

Das Ganze hat natürlich einen Haken, es wird nur für OpenSSL funktionieren und wird auch nicht ständig von mir getestet, aber wer mal reinschnuppern mag, gerne hier weiter:

https://www.routerperformance.net/opnsense-repo/

Viel Spaß! :)
#14
Servus,

wer sein Hobby zum Beruf machen will und zufällig in oder um München wohnt (wohnen will), darf sich gerne bewerben.

Hauptsächlich geht es um die Verwaltung unserer Core Infrastruktur und Kundenprojekte (OPNsense/Linux/Cisco/Switching) sowie Kundenfirewalls/-router.

https://www.max-it.de/karriere/stellenangebote/

Bei Fragen gerne auch PM an mich  :)
#15
19.1 Legacy Series / Mellanox ConnectX-3 support
December 13, 2018, 08:45:21 AM
No idea if someone realized it, just for the archives:

With FreeBSD 11.2 (OPNsense 19.1) there's now mlx4en support included, which means finally the ConnectX-3 adapter get recognized by the system when setting this in /boot/loader.conf.local:

mlx4en_load="YES"

#16
It's easy to revert a config.xml via SSH when just replacing the file itself or editing and finally reboot.
Is there a way to also do this without a reboot via CLI?

Just adding some stuff to config.xml and hitting save via UI overwrites it and via google you only find pfsense examples not fitting here.

Anyone? :)

Thx
Michael
#17
German - Deutsch / Webinar VPN-Vernetzung
November 15, 2018, 05:30:32 PM
Ganz frisch rein gekommen, vielleicht lernt der ein oder andere ja noch was :)

https://www.youtube.com/watch?v=wq-M0bAFViE&t=
#18
18.7 Legacy Series / WireGuard: Last call for testing
September 02, 2018, 07:33:29 AM
Hi,

it would be nice if we could fine some more ppl to test this plugin.
If you have 2 OPNsense, or one that is not production grade and Android, you could test the plugin and do a simple setup.

I'd go stable with 18.7.2 or 18.7.3, but the feedback is a bit low right now.

https://forum.opnsense.org/index.php?topic=8758.msg43021#msg43021

Thanks! :)

Michael
#19
German - Deutsch / VoIP und Loadbalancing?
March 12, 2018, 01:44:28 PM
Hi,

ich hab hier ne Cloud TK Lösung mit 4 ADSL Leitungen. Erster Test mit LANCOM und dummen Loadbalancing ging in die Hose. Klar, da kanns mal vorkommen dass SIP über WAN1 und RTP dann über WAN2 geht. Das wird bei OPNsense sicher nicht anders sein solang man die Client IPs nicht über verschiedene Failover Groups routet.

Jetzt meine Frage, kann siproxd da irgendwas bringen? Irgendeine Intelligenz dass SIP und RTP immer über eine outbound IP geht? Nicolas, hast du da nen Plan? Ansonsten mach ich Loadbalancing und teile das in Client IPs ein.
#20
General Discussion / Someone uses Privoxy?
December 10, 2017, 06:12:00 PM
I saw this as a package, but not sure if it still works, or better, does its job :)