Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - slavetothesound

#1
20.7 Legacy Series / opnsense-bootstrap failing on AWS
November 12, 2020, 09:08:32 PM
I ran the script 4 times yesterday on the official AWS marketplace image of `FreeBSD 12.1 RELEASE` just as described in the short instructions on github. https://github.com/opnsense/update#opnsense-bootstrap

I never saw an error message, but all 4 attempts resulted in a system that was no longer reachable via SSH or HTTPS.

Is there an undocumented step or trick somewhere that I might missing? Does it maybe change it's IP configuration from what is in the AWS control panel?

Edit:
The instance specs I was using were 't3.small' - 2 core, 2GB ram, 12GB SSD.
I tried it with 1 or 2 interfaces always all on the same private subnet (172.21.3/24).
Nothing in the system log to indicate success, new password or anything like that.
All requests timed out rather than being rejected.
#2
General Discussion / Amazon SSM Agent
November 10, 2020, 06:31:28 PM
Is it possible to install Amazon SSM Agent on OPNsense? I'd buy a support contract for the AMI for that feature. Currently my firewall is the only instance in my VPC that I can't access via Session Manager and will need a jump host.

I see the software has been ported to BSD, but I get a lot of warnings trying to scare we away when I go to install it on pfSense. I can't say I'm versed enough in BSD to want to chance it.
https://pkgs.org/download/amazon-ssm-agent
https://www.freshports.org/sysutils/amazon-ssm-agent