Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - t84a

#1
I'm far from an expert here but why aren't you using multi-wan and failover as designed by OPNSense using 2 interfaces?
#2
General Discussion / Re: WAN Failover
June 01, 2025, 03:40:53 PM
For anyone playing with this, make sure you uncheck Sticky Connections in Firewall -> Advanced if your backup WAN is metered.
#3
General Discussion / Re: WAN Failover
May 30, 2025, 04:46:47 PM
I posted this question on another board and was told not to use a group so I'm giving it a try.
#4
General Discussion / WAN Failover
May 29, 2025, 07:44:28 PM
Greeting again.  I'm trying to get this to work. I followed the instructions here: https://docs.opnsense.org/manual/how-tos/multiwan.html

I have 2 WANs: Mediacom and TMobile.  I want Mediacom to be the default.

Everything seemed to go smoothly until I set the Gateway in LAN1 to WANGROUP (the name of my Gateway Group) in the Pass All firewall rule.  When I apply changes, I lose internet.  If I change it back to "default", internet is restored.  Right now, I'm only working on LAN1 (192.168.2.1/24).

I can post screenshots for anything that you think may help.  Thanks

#5
Thanks. Given that I'm currently using TP Link, I don't really require anything special.  I would need 2 that can take heat.  One is in my attic and one is in my detached garage.  I'm using TP-Link EAP225 Omada AC1350 for those and the TP-Link AX1800 WiFi 6 Router V4 (Archer AX21) for the indoor ones.

I have 1 AP on LAN1, 3 on LAN2, and 1 on LAN3.  All have unique SSIDs.

I'm wondering if I can get away with the Unifi U6-Pro or the U6+.  They say they are good to 140 deg F. I really don't want to employ a controller.

Thanks again.

#6
General Discussion / Access Point Recommendation
May 19, 2025, 02:38:15 AM
I'm looking to move away from TP Link. I have 5 plus a repeater now, 2 are outdoor. I did a quick search for US Government approved access points and HPE Aruba and Ubiquity, among others (more enterprise suitable), came up. I wasn't really looking to spend $1k on new access points. Anyone have recommendations? Thanks
#7
General Discussion / Re: beginner to opnsense
May 15, 2025, 03:25:50 PM
If you go to FIREWALL -> RULES, you'll see that there are a bunch of "Automatically generated rules."  These should give you good protection.

The outside of the units do tend to get hot. I questioned Protectli about mine and they said it was normal.  It's usually just hot on the cooling fins by design.  I set mine on a ceramic tile just in case.
#8
General Discussion / Re: beginner to opnsense
May 09, 2025, 08:23:53 PM
My recommendation is keep it simple. Use the switch on one interface.
#9
Post 41 was from my phone. To be clear, I'm positive I tried Eric's recommendation.

I restored a backup from the beginning of April and started over. Instead of coming back to this thread, I went from scratch.

I'm not sure what was jacked up. My apologies to Eric. He's helped me on every one of my topics.
#10
Quote from: EricPerl on May 08, 2025, 11:42:07 PM
Quote from: t84a on May 08, 2025, 09:44:09 PMUpdate.  Here's the solution thanks to the HomeNetworkGuy:

FWIW, this is EXACTLY the same as in reply #3 on this thread...

Crap.  You are 100% right.  I probably tried it but did it wrong.  So to correct myself:  Thanks to ERIC for the solution!!
#11
Update.  Here's the solutio. Thanks to EricPerl.
#12
Great news. This is on my list. Thanks
#13
Quote from: meyergru on May 08, 2025, 03:12:50 PMYou can compare the differences between any of your last configurations yia System: Configuration: History.

What do you mean by "I set it back to Pass All and everything works."? You only showed one firewall rule to that extent here. We were chasing ghosts here if that was not the only rule and you did not have internet access with that.

If it was not the only manual rule on that interface, then please show all interface rules. As I wrote, your first goal should be to enable internet access from all interfaces, then block specific inter-VLAN traffic without losing internet access.


On Port 3. The experiment in this thread was with Port 3-Cameras.

I have Pass All on all 3 LAN interfaces now.
#14
Just a thought. Does a log exist that tracks every change that I made to any configuration?
#15
I really appreciate everyone's help.  I guess I can take some small comfort that there's something bigger going on.  I set it back to Pass All and everything works.  I disabled the other WAN interface first to see if that would fix it and it did not.  Maybe if I get some time, I'll put the Untangle hardware back on and reinstall OPNSense on my Protecli box and start over although my configuration is really just out of the box settings.  Thanks again for all your help.

If anything pops up and you want more screenshots, please post.