OPNsense Forum

English Forums => General Discussion => Topic started by: Ardentis on April 01, 2025, 07:48:00 AM

Title: New opnsense setup
Post by: Ardentis on April 01, 2025, 07:48:00 AM
Hello

I currently have an out of the box WiFi router connected to HFC modem. I would like to put Op sense before the router. It is not possible to install op sense on the router, so I am looking to get a Protectli hardware device, and put it before the router. Maybe Protectli V1410. I am learning this as I go.

Can anyone recommend some links or tutorials that will walk through some options for configuration and setup? I currently have a pihole server set up on the network, and I do have a double NATed segment on the network just to keep a work device isolated from the rest of the network. Just trying to figure out the best configuration, and trying to avoid any security misconfigurations.

Thanks for any advice
Title: Re: New opnsense setup
Post by: bartjsmit on April 01, 2025, 07:59:03 AM
You are making things more difficult for yourself. Replace the router with the Protectcli instead of trying to use them in series.

That will also give you an easy roll-back in case it takes longer than you think to set up OPNsense
Title: Re: New opnsense setup
Post by: Ardentis on April 01, 2025, 08:44:09 AM
Quote from: bartjsmit on April 01, 2025, 07:59:03 AMReplace the router with the Protectcli instead of trying to use them in series.


I intend to use the router as a WiFi AP as it is a triple mesh setup that covers the required area. I was thinking that the setup would be to use the Protectli as the router and firewall, and put the current router into a WiFi AP mode. I assume that is what you are talking about?



Title: Re: New opnsense setup
Post by: bartjsmit on April 01, 2025, 11:48:43 AM
Yes, I think that is a much more sensible approach. Layer 3 on OPNsense and Layer 2 on the mesh, each doing what they do best.