Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - erbmur

#1
25.7, 25.10 Series / HAProxy - what did i do?
November 03, 2025, 07:51:35 PM
Hi all,

I setup haproxy a long time ago and through blood and sweat I managed to get it to work.
I now want to make some changes and I can't remember what I did!

The main problem I am having is I want to change my front end authenticator from authelia to tinyauth.
looking at the config file, I have a bunch of stuff I somehow managed to manually add to the file, under my public facing services I have a line in the config saying  # WARNING: pass through options below this line, with a bunch of stuff I somehow managed to stick underneath it, but I don't remember where or how I did it, and I need to make some changes to these.

if it helps, whenever I test syntax, I get a soft warning message with a bunch of "[WARNING] (33030) : config : parsing [/usr/local/etc/haproxy.conf.staging:132] : a 'http-request' rule placed after a 'use_backend' rule will still be processed before."
#2
25.7, 25.10 Series / Re: Help needed with Caddy settings
November 03, 2025, 01:27:42 PM
OK,
thanks for the advice!
#3
25.7, 25.10 Series / Help needed with Caddy settings
November 03, 2025, 01:13:30 PM
Hi All,

Im trying to setup caddy and am hitting a roadblock.
I need to setup some handers for a domain that is freely accessible from the local network, but must pass through an auth provider when being accessed externally.
I have setup the two handlers for the domain, the first one is access list locked, the second has the authenticator pass ticked.
However, when checking the automatically generated config, I can see that an automatic abort handlers has been placed into the first handler instance for my internal network, so the second external handler never receives any traffic.
Is there a way of turning this off?  Or is there a workaround that I need to do?
#4
Hey guys,

I have followed this walkthrough https://docs.opnsense.org/manual/how-tos/shaper_guestnet.html to setup traffic shaping for my guest network but it doesn't seem to be taking affect.
I have replaced interface2 with LAN for testing purposes, and everything there gets limited as expected.  When changing interface2 back to GuestNetwork which is a VLAN running on the same interface as the LAN, the shaper files to limit speeds.
Is there something I am missing in the setup?
#5
Hello everybody,

I made the jump from pfsense to opnsense yesterday on my homelab.
I have managed to get everything setup apart from one.  I seem unable to pass traffic through a wireguard VPN gateway.
I can see the gatways are online via the gateway widget on the home screen.
https://ibb.co/LrmWPvp

I have setup NAT rules for the three gateways.
https://ibb.co/LSWXzCt

I have setup the below firewall rule to on the LAN to pass all network traffic from one of my devices through one of the gateways.
https://ibb.co/25jwDWh

When the rule is disabled, I can ping 8.8.8.8 as normal get the below response.
https://ibb.co/my6m1kb

However, when I activate the rule the same ping brings back the below response which is a response from the opnsense ip address. When trying to access the web, I also get the below error message. What am I doing wrong?
https://ibb.co/s6xQqsH
https://ibb.co/gVbBb9r