Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - lorenzo.bardi

#1
Tried to reset NetflowData in Reporting/Settings. SOLVED! (Wait 1 minute!)
Anyway I've opened a github thread, in order to understand the causes.
Quotehttps://github.com/opnsense/core/issues/6711
#2
Ok, after patching the client export shows "auth SHA1" row.
If "cipher AES-256-GCM" is written on the ovpn file it works anyway (probably ignored).
The problem is the "compress lz4" row. This row is not ignored so I can connect (green light) but my internal devices are not reachable.
I will have to delete this row on every ovpn profile :(
#3
I've tried it yesterday evening, connection was ok but when I tried to web browsing OPNsense (or any other local IP) I got no response.
After that I replaced the new ovpn profile generated and it started to work.
These 3 lines in the new profile are missing:
cipher AES-256-GCM
auth SHA1
compress lz4

So:
- Cipher was deprecated
- I haven't found any compression option in the new setup
- auth SHA1 was setted up so I don't know why it was not shown on the profile
Any suggestions?
#4
Hello,
After 23.7 update and a backup restoration I've noted that Insight is not showing any new data.
Netflow is configured properly, I think.
Have you encountered this issue?
Thank you
#5
Hello,
Some years ago I've used the Server wizard to create an OpenVPN Server for the factory I work for.
I've configured every single certificate for each user added in the OPNsense local database. I've used TLS Authentication Only SHA1, AES-256-GCM (now says deprecated), LZ4 tunnel compression.
I'd like to migrate this configuration to the new "Instances" section without changing all the Client Export ovpn files (over 50 clients).
How can I do it?
Thank You


Lorenzo Bardi (Delphi Developer @Esse Srl)
3x Dell PowerEdge R730
Proxmox VE w/ Ceph
OPNsense 23.7