Thanks for your answers, franco!
(Honestly,) I only tried the bogons download from the command line (and it failed). But I had only tried because there was no bogons files on the secondary firewall while there was one on the primary - this is why I suspected this to be a problem. I will update the cronjob to run more often and check if (updated) files appear! I'll let you know.
> That's not a usual setup and most people in stricter environments don't care too much about not having outside access for stray components since everything is configured to use local services.
All services I found I configured to use local services as well (although I'm not doing the stunt because I need a "stricter environment" but I am constrained with the public IPs, unfortunately 😕). I will have an eye on it - luckily there is a nice error message from arpresolve that indicates once the secondary firewall tries to access the default gateway... 🙃
Looking forward to using OPNsense in the environment!
(Honestly,) I only tried the bogons download from the command line (and it failed). But I had only tried because there was no bogons files on the secondary firewall while there was one on the primary - this is why I suspected this to be a problem. I will update the cronjob to run more often and check if (updated) files appear! I'll let you know.
> That's not a usual setup and most people in stricter environments don't care too much about not having outside access for stray components since everything is configured to use local services.
All services I found I configured to use local services as well (although I'm not doing the stunt because I need a "stricter environment" but I am constrained with the public IPs, unfortunately 😕). I will have an eye on it - luckily there is a nice error message from arpresolve that indicates once the secondary firewall tries to access the default gateway... 🙃
Looking forward to using OPNsense in the environment!
"