OPNsense Forum

English Forums => Zenarmor (Sensei) => Topic started by: ricksense on August 15, 2023, 11:47:13 AM

Title: [SOLVED]Zenarmor default policies doesn't work on GUEST interface
Post by: ricksense on August 15, 2023, 11:47:13 AM
Hi,
I installed Zenarmor plugin on my OPNsense 23.1.11 firewall (Which runs as a VM for the time being).
I set up the default policy on LAN interface (em1) to block a few web contents.
Here is the original setup:

(https://images2.imgbox.com/0f/b0/hj8ZVqmj_o.jpg) (https://imgbox.com/hj8ZVqmj)

and everything works as expected.
I then added another virtual interface  (em3) and set a subnet for GUEST in OPNsense. I wanted to use the same policy and setup on it as em1, so I checked mark (em3) in Zenarmor, but I got an error message when I clicked the APPLY button:

https://imgbox.com/WOEjaXx6
(https://thumbs2.imgbox.com/f1/ff/lav5Rlsh_t.jpg) (https://imgbox.com/lav5Rlsh)

So, I set the tags on both interfaces accordingly:

(https://images2.imgbox.com/3e/2a/u60O4x7O_o.jpg) (https://imgbox.com/u60O4x7O)


I though that I had fixed the issue.

However, the block rules still seem not to be working on the guest(em3) interface as they regularly work on em1(LAN). In a few worlds, facebooks and adult content aren't blocked as expected.

Could anyone please help me figure it out?

Thanks
Title: Re: Zenarmor default policies doesn't work on GUEST interface
Post by: ricksense on August 15, 2023, 07:27:21 PM
ok, I fixed it
I filter rule for GUEST kept it from working properly.
Thanks anyway