1
General Discussion / Re: OPNSense setup in rented apartment
« on: August 17, 2022, 08:33:30 pm »First of all,
1. are you connecting opnsense to edgerouter or directly?
2. have you tried using the same mac address on the opnsense from edgerouter? (useful if landlord gives ip with dhcp)
3. for the "Block private networks" and "Block bogon networks" part, you need to treat it the same as if you had an ISP providing you internet through dhcp within a subnet with other probably compromised hosts, you usually disable these two options if you have internal opnsenses routing between your subnets
1. Right now I have the Sense connected to the Edgerouter, but in the future, the Sense should replace the Edgerouter.
2. The IP I get from my landlord is static, so it's always the same. I didn't try with the same mac address.
3. Since I have the Sense behind my Edgerouter, I think I need these two options, if I understand it correct.
3. If you have your edgerouter in bridge mode (no firewall) you have effectively a beefy switch, all the hosts on the next network can access your subnet, my both isps gave me their devices in bridge mode and i regularly see nmap and other tools trying to scan my network from the isp's subnet. Those options you turned off blocks anything trying to enter your subnet except established connections.