Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - DrJon

#1
General Discussion / Re: OPNSENSE Firewall Basics
May 16, 2020, 05:07:17 PM
Great, thankyou for that! Much appreciated [emoji1303]

Sent from my CLT-L09 using Tapatalk

#2
General Discussion / Re: OPNSENSE Firewall Basics
May 16, 2020, 01:46:16 PM
Quote from: bartjsmit on May 16, 2020, 12:40:46 PM
Quote from: marjohn56 on May 14, 2020, 04:32:21 PM
You can still connect to your server from home, no mater what the LAN IP range is set to.

Not quite; if you're on a remote network, say 192.168.1.0/24 from Starbucks WiFi (remember them? other burnt coffee peddlers are available) and your home LAN is also on 192.168.1.0/24, then your laptop will not route traffic through the VPN since it is directly attached to a 192.168.1.0 network already.

Safest choices are class C subnets in the middle of the 10 range, e.g. 10.37.98.0/24

Bart...
Thanks, that's what I thought. So for example I could set the lan ip to 10.50.50.1/24 and the dhcp to 10.50.50.10/24-10.50.50.245/24??

Sent from my CLT-L09 using Tapatalk
#3
General Discussion / Re: OPNSENSE Firewall Basics
May 16, 2020, 09:49:01 AM
So I have set up nordvpn after failing to get anywhere with cyberghost and all works well!
I followed their guide and after some minor adjustments everything seems to work.

I have now discovered a new problem. How do I bypass the vpn for certain devices? Can I do this by device ip address or mac address?
#4
General Discussion / Re: OPNSENSE Firewall Basics
May 14, 2020, 09:20:55 PM
Great, thank you very much  ;D
#5
General Discussion / Re: OPNSENSE Firewall Basics
May 14, 2020, 07:16:22 PM
Great, thanks. Cyberghost works with OpenVPN. Are there instructions for NORDVPN? I assume that is what you use?
#6
General Discussion / IPSec?
May 14, 2020, 06:02:26 PM
I loaded up earlier and noticed I have IPSec in the traffic flow graph. I have not set up IPSec so am unsure what's going on.
#7
General Discussion / OPNSENSE Firewall Basics
May 14, 2020, 01:08:06 PM
Hi, I have installed OPNsense last night for the first time. I have so far just taken a look around and not set anything up yet. I have a few questions and apologise for any that seem stupid.
1. When first set up after initial installation what firewall protection does the system offer. Is it safe to go live?
2. I have a DM200 modem I plan to use for my Internet connection. It uses PPPOE and I have the settings from BT. Will this work OK or is there a better device?
3. I have currently got the default IP address range set up 192.168.x.x. I am wanting to change this as I want to be able to remotely connect to my server away from home. What address range is best to use? I was considering 172.16.x.x/24 or 10.1.x.x/24.
4. I would like to connect my cyberghost vpn and use one of the spare interfaces as the output port for the connection ie: VPN connects via wan but distributes connection via opt1? Is this possible?

I'm sure I have more questions  but for now I think that's a good start  ???

My setup is as follows:
DM200 modem
Watchguard xtm5 series (OPNsense 20.1.6)
HTPC
Windows server 2019
24port managed switch
8 workstations (laptop and desktop)
Mutiple smart home devices, Alexa, ip cameras, hive, hue etc etc

Many thanks all!
#8
General Discussion / NEWBIE ALERT! HELP!!!
May 13, 2020, 10:23:21 PM
Evening all,
I have JUST set up OPNsense for the very first time. I have never used it before and have no idea what I'm doing. I have installed it on a WatchGuard XTM 5 Series. I want to be able to set it up correctly and with no holes in the security. I am pretty good at following instruction and learning. I do have some networking experience as I have a server with Active Directory and multiple workstations, smart home equipment, media server etc etc
I have played with pfsense in the past, but never live and came across opnsense while playing about and learning. I have opted for opnsense as I hope it will lend itself to my needs and understanding better than pfsense. certainly visually the gui is much better and simpler to use.


Can anyone help with:
getting the initial set up correct so I can introduce the firewall into the live network without the wife shouting at me because nothing works!!  :o
and I have read that the LCD panel on the front can be made to work.

huge thanks in advance to anyone that can take me under their wing and help out!