Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - bigshorty

#1
18.1 Legacy Series / Re: Tunnelbroker IPv6 Issue
April 28, 2018, 12:37:56 PM
Nice one chaps, all sorted now.

Thanks for all your help.
#2
18.1 Legacy Series / Re: Tunnelbroker IPv6 Issue
April 27, 2018, 08:44:20 AM
Quote from: Maurice on April 27, 2018, 12:47:38 AM
Quote from: bigshorty on April 26, 2018, 09:49:04 PM
The only issue now according to the IPv6 test site is that my firewall is filtering ICMPv6 messages. Any ideas on how to rectify this, if it can be, would be very welcome.

Just create a firewall rule allowing ICMPv6 Echo Request.

In what interface do I need to create that rule?
#3
It seems the speed test site I was using was the reason why my download speeds were so close to the rate I configured into traffic shaper. I tried various other tests and a few were reading around 3.5mbps above the traffic shaper rate I configured. Panic over!
Thanks for all your help though, at least I know how to configure traffic shaper now which should prove very useful.
#4
18.1 Legacy Series / Re: Tunnelbroker IPv6 Issue
April 26, 2018, 09:49:04 PM
I appreciate all your efforts in trying to sort this problem, however I have managed to fix it, mostly.
It had nothing to do with my opnsense configuration, it was my modem! I was using a Zyxel VMG3925 in bridge modem mode, and some spark of inspiration made me decide to try an unlocked BT HH5A with LEDE firmware installed I had knocking around. I set the HH5A up as a bridge modem and hey presto, my IPv6 tunnel works a treat and has been stable for the last couple of hours.
The only issue now according to the IPv6 test site is that my firewall is filtering ICMPv6 messages. Any ideas on how to rectify this, if it can be, would be very welcome.
#5
18.1 Legacy Series / Re: Tunnelbroker IPv6 Issue
April 26, 2018, 08:56:54 AM
Forgot to mention that I bypassed Opnsense and set up my Asus RT-AC86U as my router and tried it through that, but still couldn't get my ipv6 tunnel up and running. This makes me wonder if its not actually an issue with my hardware or configuration. I've heard MTU settings might need to be changed on my tunnel for some PPPOE connections to work properly, wonder if this might be the problem.
#6
18.1 Legacy Series / Re: Tunnelbroker IPv6 Issue
April 26, 2018, 08:41:39 AM
Thanks for the reply bitman.
I entered the firewall rules you mentioned, but still no joy. Following a reboot of opnsense I can get 10/10 on the ipv6 test site, but can't load ipv6 sites on my browser. After a few minutes I test my ipv6 connection again on the test site and my ipv6 address disappears and I get a 0/10 score. I have followed all the guides out there methodically and no matter what I do I get the same results, it's driving me insane because I just cannot figure it out. As said previously, I had it up and running perfectly before I changed ISP.
I have attached some sections of my system log and was quite surprised by the entry at 20:40:34 which mentioned something about a 'returned exit code '1'. I don't actually know what any of it means so if anyone has any thoughts please do let me know.
#7
18.1 Legacy Series / Re: Tunnelbroker IPv6 Issue
April 25, 2018, 12:51:37 PM
A quick update.
I can get to the point where I have my tunnel configured and online, I can also ping ipv6.google.com in command prompt from my PC, however IPv6 websites won't load.
Any ideas? Please??
#8
18.1 Legacy Series / Re: Tunnelbroker IPv6 Issue
April 24, 2018, 10:58:31 AM
Thanks for the reply Franco.

Unfortunately I don't have system logs for this as yet, but I'll try and get some when I restore the configuration I used back onto opnsense. I only two issues I have when configuring my tunnel are if and where to use the routed /48 prefix, and adding all the firewall rules that are needed, those two parts are the one's I struggle with most.


I did have my tunnel up and running fine before I switched ISP, this is the first time I have tried to configure my tunnel with my new ISP. I have checked to make sure my ISP firewall is off, just in case that was the issue, I also have a static IP address so it can't be an IP address change, so I'm at a loss as to knowing why it will work for a couple of minutes following a reboot, and then won't work.

I'll see if I can get a system log together, in the meantime any other thoughts / ideas would be very welcome.
#9
Hi All

Can any of you helpful lot tell me why my HE Tunnelbroker IPv6 connection will drop within a few minutes of rebooting Opnsense, running version 18.1.6?

It works fine for a short time after I reboot Opnsense, IPv6 test site gives me 10/10 for IPv6 connectivity, but then it seems to give up and can't access some internet sites, particularly Google, Gmail and Tunnelbroker, although a lot of other websites will load.

Any ideas what might be wrong and how to fix would be greatly appreciated. Happy to give any other info should that be of use, just let me know what you need.

Many thanks in advance.
#10
Quote from: hutiucip on April 20, 2018, 05:21:31 PM
From the docs:
https://docs.opnsense.org/manual/how-tos/shaper.html#share-bandwidth-evenly

Quote from: bigshorty on April 20, 2018, 02:24:59 PM
From what I've researched it seems I need to configure Traffic Shaping within Opnsense, but the guide seems more specific to limiting speeds to individual devices, and not to an internet connection as a whole.

Not true: the link I gave you upon is about limiting the total bandwidth first, and then share it evenly and dynamically (based on simultaneous individual needs) between individual devices.

Let me hear back if it works for you.

Ok, I've followed the guide in the link you gave me and I think it partly works. What I've done is a number of speed tests just to check the bandwidth figures set in opnsense traffic shaper are my actual download and upload speeds. Download speeds seem to be spot on, every speed test I have done will show download speeds at 0.05 to 0.10 Mbps of the actual speed set in opnsense. Upload is a different matter though, if anything the upload speeds I'm getting now are higher than they were before I configured traffic shaper. Any thoughts as to why this might be happening? I've attached a pic of my traffic shaper stats in case that might help.

UPDATE: I've just removed all the traffic shaper settings, just to see if speeds will revert back to what they were before configuring traffic shaper, and my download speed won't go above what I set it to when using traffic shaper. I've rebooted opnsense just in case it needed it to update new settings but this has not made any difference. I've even tried wired connection speed tests on various devices and my download speeds won't go above traffic shaper settings, even though they should be at least 5mbps faster. Any advice?
#11
Many thanks for the advice and link, much appreciated.

I'll have to give it a go tomorrow, Friday night is party night for me!!!

I will definitely update you tomorrow as to how I get on though, thanks again.
#12
Hi All

Just wondering if any of you helpful guys can tell me if it's possible to manually cap my incoming internet download and upload speeds, and if so how would I go about doing this?

I'm currently running a Billion 8800NL as a bridge modem, connected to an Opnsense firewall, which then feeds a gigabit ethernet switch which is used to provide internet access to wired devices and also sends internet access to my Asus RT-AC86U and RT-AC51U which are both in access point mode used for wireless devices. As the Billion and Asus devices are in bridge and/or access point modes, a lot of their features are disabled, meaning the only device that seems likely to be able to do this would be my Opnsense firewall. From what I've researched it seems I need to configure Traffic Shaping within Opnsense, but the guide seems more specific to limiting speeds to individual devices, and not to an internet connection as a whole.

If there is any advice on how to do this, if it can be done, I'd be very grateful to know.

Many thanks in advance.
#13
Hi All

Hoping any of you guys can help shed light on a NAT issue I'm having with my PlayStation consoles running through Opnsense.

I used to run Opnsense on my network, but had to revert back to pfSense as for some reason running Opnsense would set my PS consoles to NAT type 3, which would limit use of my PS consoles. By default PlayStation recommend NAT type 2, and this is easily achievable on pfSense by checking the following options in the UPnP & NAT-PMP Settings:

- Enable UPnP & NAT-PMP
- Allow UPnP Port Mapping
- Allow NAT-PMP Port Mapping

Selecting these options on pfSense gives my consoles the recommended NAT type (2) needed to perform all online functions, however selecting the same settings on Opnsense still makes the PS consoles connect with NAT type 3 and limits PS console use.

I'm probably missing something really basic, I'm not the most technically minded person, but I would be grateful if someone out there could point me in the right direction to make Opnsense allow NAT type 2 from my PS consoles.

Many thanks in advance
#14
18.1 Legacy Series / Access Bios
February 10, 2018, 11:45:54 AM
Hi All

I'm new to Opnsense, and up until now I've been very happy with how it performs. I thought I'd ditch the old PC I was using to run Opnsense and change to one of these nifty little Qotom mini PC's, which is running really well, apart from one slight problem. I'm not sure if I've put this in the right forum section but I was wondering, and hoping, if anyone out there can help me with an issue regarding not being able to access the bios of my Qotom Q220S running Opnsense 18.1.1

I've tried repeated rebooting in Opnsense console to access bios using every 'F' key on the keyboard, and using the 'Delete' key which is the Qotom default, but nothing seems to allow me access to the bios. Also, when I try to hit the space bar to pause the Opnsense boot loader that doesn't work either.

I want to be able to access the bios to change the fan idle settings, but not being able to access the bios will likely cause other issues in the future should I want to restore the Qotom to default as I wont be able to change any boot options, and boot from USB for example.

Any thoughts, advice and help on this would be greatly appreciated.