Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - cosmin alexa

#1
Virtual private networks / NAT TRAFFIC
December 12, 2023, 12:59:41 PM
Hi,
I'm pretty new with opnsense, so before to make any change, i would like to know if i'm going right.

Situation:
I have two customers with same network, site to site ASA-customer; for customer1 we have done an internal NAT.
costomer1 10.100.0.0/16 NAT to 10.110.0.0/16 gw Cisco ASA
customer2 10.100.0.0/16  gw cisco asa

Users connect in VPN to opnsense, based on permission and rules, the traffic goes on Cisco ASA or AWS.

customer1 needs to be moved from Cisco ASA gw to defauld gw (AWS).

How should i configure the NAT in order to let users reach cosutmer2 on 10.100.0.0/16 and customer1 on 10.110.0.0/16 ?

Should I maintain customer1 inf firewall:alias on 10.110.0.0/16, and in NAT, to set as in the following?
Interface: LAN
Source: any
Source Port: *
Destination: 10.110.0.0/16
Destination Port: *
NAT Address 10.100.0.0/16
NAT Port: *
Static Port: YES

Thanks you for any feedback.
#2
Hello everybody,
I wanted to find out if there is a way to make a massive download of user certificates; and in the same way have access to the OTP keys of all users in a single file, so as not to open every single user and copy the key.

Thanks in advance for any response
#3
Ciao A tutti,
Volevo capire se c'è un modo per fare un download massivo dei certificati utenti; e allo stesso modo avere l'acesso alle chiavi OTP di tutti gli utenti in un solo file, così da non aprire ogni singolo utente e copiarsi la chiave.

Grazie in anticipo per ogni eventuale risposta