Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - Ashwini

#1

Opnsense and server is installed in vmware of host machine with bridge network.

My opensense and server is in same subnet. But the existing router is in different subnet.
Current behaviour: other machines which are in same subnet as opense and server are able to connect to existing router.
Even the server is able to communicate with existing router when opensense is down.

And the opnsense host machine is able to communicate with router.

But opensense is not able to connect to router IP. Please let us know what is the configuration needed in opnsense so as to make it communicate with route ip?

Please refer the attached image.
#2
Hardware 1- Opnsense host
Hardware 2 - Server
Hardware 3 - Client

HW 1,2,3 are in same network.
Internet access is given only for HW2(server).

HW3(Client) can access HW2(Server).

HW1 ( opnsense ) will act as a firewall/router between HW2 and HW3.

My question is how to protect HW3(client) in case of external attack to HW2(server) using security features of HW1(opnsense).
#3
Quote from: hutiucip on March 21, 2018, 09:13:58 AM
It's not quite clear for me:

Quote from: Ashwini on March 21, 2018, 07:06:54 AM
Hi,

My aim is to achieve below settings:
I have one hardware which has Opnsense(behaves as router and firewall) set up in vmware with no internet access. And i have a server where i have internet access.

No internet access for vmware host? Or for OPNsense virtual appliance?

QuoteOther machines in network will have to communicate with this server.
Which network? Is this network the single existing network in which everything resides? Or your vmware host/ guests are in a different network?
QuoteSo my intention is to protect this network, so that any external attacks to the server should not impact other machines connected in the network.
You said there is no internet acces to vmware (or OPNsense), but there is to the server: so the vmware hardware is a different hw than of the server that has internet access? Or maybe both OPNsense and the server with internet are vm appliances? Again, what is your network(s) topology?

QuoteNow I wanted to know if it is possible to protect my network using Opnsense?

Let's see how, but first let's see where we are (see above)!... :)



Hardware 1- Opnsense host
Hardware 2 - Server
Hardware 3 - Client

HW 1,2,3 are in same network.
Internet access is given only for HW2(server).

HW3(Client) can access HW2(Server).

HW1 ( opnsense ) will act as a firewall/router between HW2 and HW3.

My question is how to protect HW3(client) in case of external attack to HW2(server) using security features of HW1(opnsense).
#4
Hi,

My aim is to achieve below settings:
I have one hardware which has Opnsense(behaves as router and firewall) set up in vmware with no internet access. And i have a server where i have internet access. Other machines in network will have to communicate with this server.
So my intention is to protect this network, so that any external attacks to the server should not impact other machines connected in the network.
Now I wanted to know if it is possible to protect my network using Opnsense?
#5
Hi,

I am new to Opnsense.
Is it mandatory to have internet connection to use security feature of Opnsense?
I see there is a "Download and Update" option in IPS for installing few rules.
My question is can i download all rules and update at once and use it later without internet.
Will my Opnsense work perfectly without internet after updating once?

thanks in advance

#6
Hi All,

I m new to opnsense firewall. I want to check different security features of firewall.
I have come across Intrusion Detection -> Settings -> Enabled checkbox. Please let me know how to verify if its working.

Web Proxy - Please let me know details about this feature

Traffic Sharper - Please let me know how to use the feature. It has Option Pipes/queues/Rules. Also steps to configure.

Your help is much appreciated. Thank You in advance.

Regards
Ashwini