Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - Evil_Sense

#46
For everyone who is not able to login:

Quote from: franco on August 01, 2018, 09:27:29 AM
Use a 18.7 image to boot the live mode, start installer, select "reset password" in main menu. Reboot without install, remove image and you can log in. Don't forget to set your correct authentication methods in System: Settings: Administration: Authentication Server.


Cheers,
Franco


For ssh access, look there:

Quote from: franco on August 03, 2018, 04:05:18 PM
System: Settings: Administration: "Login Group" and System: Access: Users: "your user": Login shell


Cheers,
Franco

@anon000 seems we had the same idea :D
#47
I can confirm that the password doesn't get updated.
I also get an "Invalid LAN IP address" error when choosing dhcp or leaving the field empty.

And saving an edited user only works if a password is entered (would expect to work and leaving the password at it's old value when leaving empty)
#48
Just a guess:
Did you set a login shell for the user admin?
#49
Thanks franco :)

I think this should help if one gets confused about ssh access not working after updating
#50
Just to mention: After updating to 18.7 I had to do the following to get ssh working for my user:

- Adminstration: Allow group the user belongs to for ssh access
- User configuration: Set a shell

Currently not able to lookup the exact name or location of these settings..
#51
Just a hint: the pin code has to be entered in the password field (either prepended or appended, depending on the choosen setting), there's no dedicated pin code field :).
#52
Am besten machst Du ein Alias mit allen Ports, damit nur eine Port forwarding Regel erstellt werden muss.

Unter Firewall > NAT > Port Forward:

Interface: WAN
Protocol: TCP/UDP
Source: any
Source port range: any/any
Destination: WAN address
Destination port range: {Alias der Ports die Du forwarden willst}
Destination target IP: {IP deines Rechners wo die Spiele laufen}
Redirect target port: {Gleich wie port range}
Filter rule association: Create new
#53
Die Ports müssen auf der WAN Seite geöffnet werden, den die Verbindung ist nur von aussen gesperrt.

Falls du OPNsense hinter einem Modem betreibst, müssen auch auf diesem die Ports von aussen geöffnet werden.
#54
There's a possibility to set the interface for management access on ESXi, either you use a dedicated Interface or you make sure it's on the LAN side of your OPNsense VM
#55
I just took a quick look, you have to choose the right interface (OpenVPN server in this case) in Traffic Graph.

Beside that, by clicking on the IPsec marker you can disable it's graph.

Edit:
Couldn't find a way to set this for the widget on the dashboard..

Edit2:
It seems to only apply to the listing below the graph.
#56
No problem, always glad to help :)
#57
Should be okay in my opinion, did you tried it with forwarding? Unbound would then forward the query's to the dns servers entered in System > Settings > General.

Otherwise I hope some other ideas for further tries are getting together :)

Sadly I don't run Unbound in querying mode together with a openvpn client connection.
#58
Well after rethinking your situation, I think the issue lies within Unbound's configuration, since the LAN client is able to query if the openvpn client is disabled..

Would you mind taking a screenshot of your current Unbound configuration?
#59
No idea about the first issue..

But the error you mentioned means your maximum table entries are too small. (Firewall > Settings > Advanced)
Try bumping them to 500'000.

Link for reference:
https://forum.opnsense.org/index.php?topic=7194.0
#60
Try adding your VPN network in the unbound access lists as allowed to query, maybe this helps.