Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - sanji

#1
This is very interesting. I'm having similar issues after power losses/outages.

What I always did was diconnect the modem from the Opnsense box, reboot the modem, reboot Opnsense, wait until both are fully booted and the modem has internet connectivity, then connect them both again. A real hurdle but I didn't find any other solution.

What surprises me is that all these threads always seem to be ignored. If you search for Opnsense and power outage or something similar, there are a lot of threads/posts etc. since years.
#2
I see you set followong DNS servers in OPNsense: 1.1.1.1, 1.0.0.1, 9.9.9.9 and 149.112.112.112

You said that if you do an "nslookup yahoo.com 8.8.8.8", you are getting a response from google DNS. This doesn't seem correct to me.
If you are redirecting all DNS to OPNsense, then shouldn't the response come from one of the DNS servers you set in OPNsense (1.1.1.1, 1.0.0.1, 9.9.9.9 or 149.112.112.112) instead of the Google DNS?

That would be the whole point in doing this. To prevent overriding the DNS on the client.

But, as I've said, it doesn't work for me either. I don't know what im doing wrong.
#3
Im having similar issue redirecting everything to my pihole with cloudflare upstream dns.

When I change the DNS server of my computer to 8.8.8.8 and go to https://www.dnsleaktest.com/ and start a test, it then shows a bunch of google servers, so it doesn't seem to work. Or is my understanding wrong?

In another thread (https://forum.opnsense.org/index.php?topic=15472.0) it is mentioned to create an outbound NAT translation. I dont really know if this is what it needs!?
#4
Im also wondering if it is necessary to create an outbound NAT translation. I havent read that in other tutorials.

In which case it would be necessary?
#5
I tried the different methods from this thread to redirect everything to my pihole with cloudflare upstream dns.

When I change the DNS server of my computer to 8.8.8.8 and go to https://www.dnsleaktest.com/ and start a test, it then shows a bunch of google servers, so it doesn't seem to work. Or is my understanding wrong?

In another thread (https://forum.opnsense.org/index.php?topic=15472.0) it is mentioned to create an outbound NAT translation. I haven't read that anywhere else. So is this needed?

#6
Hello,

this is my first post here, as I'm having weird speed issues.

I'm using OpnSense 20.7.3 at home as my Router/Firewall. It is connected to my Cisco EPC3212 cable modem. OpnSense is running as a VM on Proxmox.

It worked great, but today I noticed that I'm getting slow download speeds when downloading files in my browser.  (200 - 900 KB/s). Usually I get my full bandwidth of 50 MBit/s.

I tested to download the same files simultaneously on other networks (at work, on mobile data) and the speed was good. It's just slow on my network at home.

I'm having this problem on different browsers, different computers, via cable and wifi, and even on my mobile phone connected to wifi.

BUT:
I just downloaded games via Battle.net and Steam and there were no problems. I could download with speeds of about 6,2 MB/s.

Speedtests like https://speed.cloudflare.com/ and https://speedtest.net/ also show good results.

So it just seems to happen when I'm really downloading a file via browser.

What could cause such an issue?

Thank you very much for helping me!

EDIT: Streaming Netflix and Youtube Videos is also fine.
But downloading one of these test files (https://speed.hetzner.de/) is slow. I just get about 1 - 1,5 MB/s now. But downloading at the same time on mobile phone or from my computer at work is very fast.

I never had something like intrusion detection or web filtering enabled...

EDIT2: I just noticed, that video files (.mkv and .mp4) from google drive download with full speed, but .zip and .bin files are slow for example.
This sounds like some web filtering is done, but i dont have and never had anything like that enabled.