OPNsense Forum

English Forums => Intrusion Detection and Prevention => Topic started by: unlikely on April 20, 2025, 07:54:56 PM

Title: Matching traffic for both in and out interface
Post by: unlikely on April 20, 2025, 07:54:56 PM
Hello everyone,

I've been experimenting with OPNsense for a few days now. I've also gone through the documentation and explored search results, but I haven't been able to find an answer to my question.

I would like to allow all traffic originating from one group of interfaces and directed to another group of interfaces without any additional filtering.

In RouterOS, this can be done in the Filter chain since the routing decision has already been made. However, I don't fully understand when OPNsense performs packet filtering, whether this is achievable, and if so, how to set it up.

I couldn't find any options in the UI to accomplish this.
Title: Re: Matching traffic for both in and out interface
Post by: Patrick M. Hausen on April 20, 2025, 08:39:26 PM
There are no from interface to interface mechanisms in OPNsense, unfortunately.

Commonly you place rules on the ingress interface direction "in" and you can then filter on destination IP address or network. But not on egress interface. It's all IP addresses in rules.