OPNsense Forum

English Forums => General Discussion => Topic started by: spetrillo on September 25, 2024, 05:43:12 AM

Title: Firewall Deactivation/Activation
Post by: spetrillo on September 25, 2024, 05:43:12 AM
Hello all,

I currently have a physical firewall running. I have built a virtual firewall but my question has to do with deactivating the physical firewall and letting the virtual firewall become the active firewall. How do I do this?

Thanks,
Steve
Title: Re: Firewall Deactivation/Activation
Post by: bartjsmit on September 25, 2024, 08:36:44 AM
Hi Steve, I would disable the LAN interface or give it a different IP using the console. Then assign its old IP to the VM and test.
Title: Re: Firewall Deactivation/Activation
Post by: spetrillo on September 29, 2024, 08:54:01 PM
I tried that but no go. I even put my PC on the same vlan as the LAN interface of the newly built virtual firewall, but no go. Not sure how I am going to do this.
Title: Re: Firewall Deactivation/Activation
Post by: bartjsmit on September 29, 2024, 10:16:32 PM
Which hypervisor? Do you get anything from the VM console?
Title: Re: Firewall Deactivation/Activation
Post by: spetrillo on September 30, 2024, 01:06:04 AM
I am running Proxmox 8.2.7. The vm boots up properly but I am not able to ping any of the internal LAN segments on the OPNsense VM. I am going to try to build a desktop vm on the same vlan as the LAN segment of the OPNsense VM and see what happens.
Title: Re: Firewall Deactivation/Activation
Post by: spetrillo on September 30, 2024, 02:27:10 AM
So I built a simple Ubuntu 22.04 desktop. I set the network config as a manual IP and my gateway as the LAN IP of the OPNsense VM. No go...I cannot ping the OPNsense VM from the desktop and vice versa. This is very confusing to me. I am going to hit the Proxmox forum, to see what ppl say over there.

This should not be rocket science...
Title: Re: Firewall Deactivation/Activation
Post by: bartjsmit on September 30, 2024, 10:06:10 AM
There are a few choices in the Proxmox + OPNsense setup and it may be worth stepping through your build next to a known good process.

I used this: https://homenetworkguy.com/how-to/virtualize-opnsense-on-proxmox-as-your-primary-router/