Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - sclawrenc

#1
Anyone have any updates on my question?  I'm just curious if this UPnP update will be applied to OPNsense or has already been applied.

Thanks in advance.  :)
#2
I noticed a patch on the pfsense side that allows multiple UPnP clients to play the same game at the same time.  You can see more information at https://forum.netgate.com/topic/169837/upnp-fix-for-multiple-clients-consoles-playing-the-same-game

Is this already present in the latest release of OPNsense?  I tried it briefly the other day and just ended up doing manual port forwards and rules, but would prefer to use UPnP to make it easier for all of our gaming devices here at home.

I realize there a security risks with UPnP, and I will restrict via ACL.

Thanks in advance!
#3
Did you ever find a solution for this?
#4
Thanks so much rman50!! 

Hopefully, I will have some time over the weekend to work on getting this setup on my HP 730t running OPNsense.  Am I understanding correctly that the json file you provided I could use with my grafana installation?

I did notice that there is an option for enabling nProbe in ntopng.  Do you think this is something that I look into or just leave it disabled?  It sounds interesting from a data collection standpoint, but I don't think I would use the nDPI function.

I'm also curious in how you are sending OPNsense metrics to influxdb via telegraph.  I'm going to look into that too. 

Thanks again!  I'm really glad that I decided to go with OPNsense based on the friendly and knowledgeable people like you in this forum and the options that OPNsense provides.  :)
#5
I have been using bandwidthd for the last couple days, and it does great on ipv4, but it completely misses all of my ipv6 traffic.  I'm assuming I will need to use ntopng to capture both ipv4 and ipv6.

I'm going to look into ntopng tutorials next.  Would ya'll recommend I store the ntopng data on the OPNsense firewall since I only plan on using it for a couple of months or should I send it to a raspberry pi 4?  I have over 200GB storage and 8GB of memory on the firewall (HP 730t) so I could probably use that if I wanted, but I also don't want to risk slowing down my 1200-1400 mbps connection.  I'm not running any IDS/IPS.

#6
I am running the latest OPNsense, and I setup bandwidthd based on the previous comments in this topic.  I will give this a try for a while to see if it provides the information I'm looking for, but on first glance it looks good.  Thanks again!
#7
Thanks rman50 and mimugmail!  This seems a bit over my head at the moment.  I do have a HP 730t for Opensense, and I have a couple of Raspberry Pi 4's so I could attempt this since it seems pretty cool to have that level of visibility into usage.

I'm currently on the Xfinity XB7 in router mode since the unlimited data plan is $25 with their gateway and $30 if I use my own modem, but I plan on spinning up OPNsense and putting the XB7 in bridge mode which I've done many times before without issue. 

So I guess bandwidthd is the best option outside of using ntopng piped to a Raspberry Pi?
#8
Is bandwidthd still the best option for tracking data usage per device per month?  I've seen vnstat metnioned too, but I am not sure if it provides usage per device.  I have consistently been going over the Xfinity 1.2 TB data cap, and I would like to have a better idea of the main culprits. Thanks.
#9
Thank you directnupe for your helpful guide.  I followed it and I believe I have it working as you intended.   :)

I noticed AdGuard Home only shows the 127.0.0.1 and ::1 in the top clients and queries.  If I wanted to see the individual clients listed instead, what would I need to do different in your guide?  I tried several things, but just wound up going in circles.   ;D
#10
Thanks RamSense.  Are you able to see the individual clients in AdGuard or do they all show coming from your router or local host IP?  Also, what did you do different to get IPv6 working?  Thanks again.
#11
Quote from: RamSense on December 10, 2021, 05:32:33 PM
Why not use the plugin version? Works great, including updates :-)

But For your unbound: have you tried setting unbound to port 5353 and adguard on port 53?
and in Adguard dns settings: Bootstrap DNS servers and Private reverse DNS servers pointing to opnsenseip:5353

That's my setting.

Thanks RamSense for your response.  I tried the plugin first, ran into an issue (most likely misconfiguration on my side), and then decided to try that other guide for fun, plus I wanted to use IPv6, but I'm not sure the plugin version supports it.  I think it would, but I am not certain.
#12
In regards to my post above, I suspect it has to do with the fact Unbound is listening on port 53 and AdGuard is listening on port 53530, but I'm not certain how to go about fixing it.  I could try some things and probably will in the meantime until someone has some feedback.  :)
#13
I followed the guide at the site listed below to setup AdGuard Home using the freebsd version instead of the community plugin, and it's working great other than I only see one client (127.0.0.1) listed in the clients.  All DNS queries are processing as far as I can tell.  Anyone know how to fix my setup to show the individual clients instead of only 127.0.0.1?

Any thoughts on using the guide I linked below versus using the community plugin?

Thanks

https://forums.torguard.net/index.php?/topic/2545-opnsense-adguardhome-total-control-mode-doq/#replyForm
#14
Just checking in to see if anyone might be able to help.  Thanks.  :)
#15
Hardware and Performance / Supported 2.5 Gbps NICs
April 02, 2021, 10:06:37 PM
Hello everyone.

Are there any supported 2.5 Gbps options to use with OPNsense?

I was considering either using the QNAP QXG-2G2T-I225 (Intel I225) or a SY-PEX24069 (Intel X550) since it will operate at 2.5 Gbps.  The X550 will operate at 10 Gbps, but it's also more expensive.

Thanks,

S