OPNsense Forum

English Forums => General Discussion => Topic started by: wusikijeronii on November 10, 2021, 08:23:09 AM

Title: Disabling the WEB interface from the public network [SOLVED]
Post by: wusikijeronii on November 10, 2021, 08:23:09 AM
I am trying to disable the WEB interface from the public network/  When the web interface has listened on the 80 port, NAT rule (to a web server) doesn't work. I also tried to move web but to another port and created block rules in the firewall settings but I, however, can reach web GUI from an external network, How to disable web GUI from a non-lan network?
Title: Re: Disabling the WEB interface from the public network
Post by: RamSense on November 10, 2021, 08:31:30 AM
Dear Wusikijeronii,

Did you tick [disable web GUI redirect rule] when changing ports en setting to https? (system-settings-administration)
I think this (older) guide wil help you: https://medium.com/@jccwbb/website-protection-with-opnsense-3586a529d487 (https://medium.com/@jccwbb/website-protection-with-opnsense-3586a529d487)
(chapter 6)
Title: Re: Disabling the WEB interface from the public network
Post by: wusikijeronii on November 10, 2021, 08:38:03 AM
I've found an option ` Disable anti-lockout` in Firewall > Settings > advanced and now blocking works