Quote from: mattlach on April 05, 2024, 06:07:28 AMThis is good info.
I have been running OPNSense as a guest under Proxmox on a small server that has one other VM on it (basic linux install for pihole) but I have found that WireGuard requires WAY more CPU than I expected at gigabit speeds, so I am considering doing away with Proxmox, running OPN Sense bare metal, and moving the pihole VM into bhyve on OPNSense instead to make sure OPNSense can talk straight to the hardware and be more efficient.
In my config the one VM would not be externally exposed, but instead get its own entirely virtual local network on the LAN side of the OPNSense firewall, so I am not terribly concerned about security, but I'll port scan it from the WAN side just to make sure.
I probably won't get around to this right away, but when I do I'll definitely post back here.
Thanks for sharing.
I intend to run a similar setup (a PiHole running on Alpine Linux in a VM under bhyve).
Did you ever manage to get this setup working properly? Can you share your complete/ detailed instruction set.. would be much appreciated.
Thanks.
"