1
18.1 Legacy Series / Re: Setup Question
« on: March 08, 2018, 03:08:32 pm »This is not how things work. It's either that i can't comprehend what you would like to achieve, or you still have a lot to learn about these stuff, so you could understand how all these services work together, so you could then design your network. I'm not mocking you or something, i'm sorry if it sounds like that. I very much understand and know that nobody is born with IT knowledge or something, so please don't feel bad. Or, the other possibility, i don't understand your goal, or another one, i simply never heard of such a design.
Why don't you try to setup an OpenVPN server on one of your LAN clients without OPNsense? You could have a working VPN connection at least, but killing the other LAN client's internet connection in certain cases would still be very difficult to achieve.
The way you would like to do this (again, if i understood correctly), in short, is just not possible (i'm fairly certain), with anything :-)
I do not know where I lost you. Ok, let say this is my network under normal circumstances:
I want OPNSense to connect to a REMOTE VPN SERVER that is located in another country for the network that OPNSense creates. In other words I want it to function as a OPENVPN CLIENT. The network it creates would be only the computers connected directly to OPNSense, NOT the other computers on the LAN.
Let's say the login credentials are interrupted for whatever reason, the computer connected to OPNSense DIRECTLY should lose internet access as such:
Notice how there is only one computer that loses internet access and it is the one that is connected to OPNSense directly.
This is what I want to achieve.