Thx, outbound NAT was the problem.
But only for ipv4, ipv6 worked before.
But only for ipv4, ipv6 worked before.
This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.
Show posts Menu
Fiber
|
WAN IF @ OpnSense (block private networkds)
(aaa.aaa.aaa.aaa)/32 public IP via DHCP
+
DMZ IF @ OpnSense (no dynamic gateway policy, ipv4 gateway rules disabled)
(aaa.aaa.bbb.bb1)/29 public IP static IP
|
ServerA
(aaa.aaa.bbb.bb2)/29 public IP with DHCP from Opnsense
┌───────────┐
│ INTERNET │
└────┬──────┘
│VLAN32
│DHCP
┌────┴───────────────────┐
│opnsense-WANPORT │
│100.150.200.146 │
│2a0a:abb0:ab3:1::18a/128│
└───┬────────────────────┘
│
│ ┌─────────────────────┐
│ │additional public IPs│
│ │100.150.210.160/29 │
│ │2a0a:abb0:ab4:340/60 │
│ └─────────────────────┘
│
┌───┴────────────────────────────┬────────────────┐
│opnsense DMZ Port + dhcpv4/6 │ static IPv4 │
│100.150.210.161/29 │ Track Interface│
│2a0a:abb0:ab4:340:aa1:ab:fe:a111│ for Ipv6 │
└───┬────────────────────────────┴────────────────┘
│
┌───┴──┬───────────┬───────────────────┐
│switch│ │ │
└──────┘ ┌─────────┴────────────┐ ┌──┴─────────────────────┐
│ServerA dhcp │ │ServerB-E dhcp │
│100.150.210.162 │ │100.150.210.163-6 │
│2a0a:abb0:ab4:340::162│ │2a0a:abb0:ab4:340::163-6│
│2a0a:abb0:ab4:348/63 │ │ 3x.../63 who needs │
└──────────────────────┘ └────────────────────────┘
WAN | public static IP über DHCP zugeteilt
|
.-----+------. LAN .-------------.
| OPNsense +-----------------------------------+ private LAN |
'-----+------' 192.168.16.1/24 private IPs '--------------'
|
DMZ | 50.60.70.1/29 public static IPs per DHCP verteilt
|
Webserver/VOIPserver/Cloud FileServer