OPNsense Forum

English Forums => Virtual private networks => Topic started by: paulo.pereira on January 12, 2026, 10:53:20 PM

Title: WireGuard VPN - OpenID Connect - Captive Portal
Post by: paulo.pereira on January 12, 2026, 10:53:20 PM
Hi,

We have bought a DEC4280 firewall to replace our current Cisco one.
We have configured WireGurad as our VPN with OpenID Connect as authentication on Captive Portal.
We have Unbound DNS disabled, we have internal DNS server.

The issue we have is that, in order to the Captive Portal to redirect to the right Microsoft Endpoints (ex. login.microsfot.com) I have to put the Microsoft Endpoints ip's addresses to the Captive Portal field "Allowed addresses", and this is unfeasible because of the many ip's that Microsoft uses.

We have tried to "Disable firewall rules" on the Portal and create them manually according to the Opensense Docs on the Wireguard Interface, but with no luck.

Any help with this will be appreciated, thanks!


Best Regards,

Paulo Pereira