1
General Discussion / Re: New-cwwk-connected to wifi for management
« on: November 07, 2024, 07:14:48 am »
Thank you again @Eric, and others for your input.
My primary router is a fortinet device. I only wanted to place the OPNsense(as a WAN/LAN bridge with SPI and no routing) between this fortinet and my internet modem to monitor/capture internet traffic. And I don't see any other way to capture all incoming/outgoing traffic, unless this device sits between the fortinet and OPNsense, since I use physical network ports (no vlans). I keep thinking plugging the OPNsesne as a bridge into my fortinet port will only capture that traffic under that port and not all other ports/networks in place.
My obsession for the secondary router (tp-link wifi with 4 gig ports), is to be able to look inside the OPNsense device's capture log that is outside my fortinet router and before the internet modem. I dont think is possible to create a FW rule from my fortinet(or any other primary router) to traverse outside its WAN port and look into the OPNsense's MGMT port I setup. I know I setup port-forward before for coming IN thru my fortinet to an internal network. Just never have done and out-going port forward or static-route.
I've been busy past days, but I am soon resuming this project again and see if I canmake it work.
thank you.
My primary router is a fortinet device. I only wanted to place the OPNsense(as a WAN/LAN bridge with SPI and no routing) between this fortinet and my internet modem to monitor/capture internet traffic. And I don't see any other way to capture all incoming/outgoing traffic, unless this device sits between the fortinet and OPNsense, since I use physical network ports (no vlans). I keep thinking plugging the OPNsesne as a bridge into my fortinet port will only capture that traffic under that port and not all other ports/networks in place.
My obsession for the secondary router (tp-link wifi with 4 gig ports), is to be able to look inside the OPNsense device's capture log that is outside my fortinet router and before the internet modem. I dont think is possible to create a FW rule from my fortinet(or any other primary router) to traverse outside its WAN port and look into the OPNsense's MGMT port I setup. I know I setup port-forward before for coming IN thru my fortinet to an internal network. Just never have done and out-going port forward or static-route.
I've been busy past days, but I am soon resuming this project again and see if I canmake it work.
thank you.