Hello,
I want to install opnsense on my network, but I do not want it to be where if I have to shutdown my computer where the firewall is, it shuts down my internet. is there a way around this?
OPNsense is a dedicated firewall appliance. If you shut down the appliance, no firewall. How do you expect this to work differently?
I get your point. However, what I was trying to say is that I do not want to have an issue where if I have shutdown my computer and do maintenance on it where the firewall is, I do not want my internet to be down at the same time. I would like to have it where I can still use my internet while maintenance is being done on the computer with the firewall.
And I would like to keep my money and spend it at the same time.
Quote from: Rasha2206 on August 28, 2024, 08:06:35 PM
I get your point. However, what I was trying to say is that I do not want to have an issue where if I have shutdown my computer and do maintenance on it where the firewall is, I do not want my internet to be down at the same time. I would like to have it where I can still use my internet while maintenance is being done on the computer with the firewall.
Buy two computers, set up a high availability pair, upgrade each node at a time. This is how data centres like mine do it and it is well supported by OPNsense.
Again, how would you expect things to work? Every firewall/router product will be unavailable during updates.
@doktornotor
you're are absolutely right, I would love to keep all of my money. Unfortunately, that is not possible.
Quote from: Patrick M. Hausen on August 28, 2024, 08:31:05 PM
Quote from: Rasha2206 on August 28, 2024, 08:06:35 PM
I get your point. However, what I was trying to say is that I do not want to have an issue where if I have shutdown my computer and do maintenance on it where the firewall is, I do not want my internet to be down at the same time. I would like to have it where I can still use my internet while maintenance is being done on the computer with the firewall.
Buy two computers, set up a high availability pair, upgrade each node at a time. This is how data centres like mine do it and it is well supported by OPNsense.
Again, how would you expect things to work? Every firewall/router product will be unavailable during updates.
thank you! you have answered my question. I am not saying that I do not want a firewall. However, I was saying that I do not want any downtime on my internet if something should happen where the firewall goes down or maintenance is being done. Again thanks, I will try the high availability approach.
Your Internet uplink and ISP have to support that setup. As far as I know it won't work with a PPPoE based DSL connections. If you can get a routed public /29 from your ISP, you are all set.
Also internally you will need some real business networking gear like switches, preferrably managed ones ...
Quote from: Patrick M. Hausen on August 28, 2024, 08:54:23 PM
Your Internet uplink and ISP have to support that setup. As far as I know it won't work with a PPPoE based DSL connections. If you can get a routed public /29 from your ISP, you are all set.
Also internally you will need some real business networking gear like switches, preferrably managed ones ...
I don't have dsl. The only internet in my area is spectrum. I also do have managed switches that run on my network.
Quote from: doktornotor on August 28, 2024, 08:16:51 PM
And I would like to keep my money and spend it at the same time.
you're are absolutely right, I would love to keep all of my money. Unfortunately, that is not possible. :)
If your use case is sufficiently business oriented and large, please do consider buying "official" appliances from Deciso to help the project. I can assure you they will work splendidly and make a perfect high availability cluster.
https://shop.opnsense.com/product-categorie/hardware-appliances/
They have all the necessary performance figures in that shop to get a proper sizing and budget estimate.