OPNsense Forum

English Forums => Tutorials and FAQs => Topic started by: dannyyy on November 23, 2024, 12:03:10 PM

Title: [Howto] Enabling the Web GUI / SSH on your management interface
Post by: dannyyy on November 23, 2024, 12:03:10 PM
Hi,

I had my difficulties to enable the remote management (HTTPS / SSH) on another network interface than LAN.
Most I read in the documentation as well as on community forums (e.g. Reddit, OpnSense Forum, ...) gave me wrong advises. Same for ChatGPT and any other LLM.

In this example, I use OPT1 as the management interface. But also works with any other

With these settings, I was able to use HTTPS and using their default ports.
Title: Re: [Howto] Enabling the Web GUI / SSH on your management interface
Post by: EricPerl on November 24, 2024, 12:33:24 AM
A simple rule on the OPT1 interface directly works just as well.
For destination, OPT1 address should be sufficient.
I assume you meant HTTPS for the port.
Title: Re: [Howto] Enabling the Web GUI / SSH on your management interface
Post by: Patrick M. Hausen on November 24, 2024, 12:49:09 AM
What you are doing with the floating rule is unnecessary and potentially dangerous.

- leave the listen interface of the UI at "All (recommended)
- add a rule allowing access to each interface where necessary

Done.