Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Topics - Vilhonator

#1
23.1 Legacy Series / Blocking specific TLD
May 19, 2023, 05:54:06 PM
Don't know how many are aware, but google just released bunch of new TLDs (or at least started advertise them) couple of days ago.

Among those TLDs were .zip (yes, DOT ZIP) and .mov TLDs. So my question is, is there a way to setup alias to collect all .zip domains or setup unbound to block them?
#2
20.7 Legacy Series / Question about Captive Portal
October 02, 2020, 04:09:01 PM
Hi.

I'm working at a company providing network connection for couple of class rooms on school premises.

We have an issue with people telling Wifi password to anyone who asks and using network for pretty much anything, but study (streaming and playing games mostly), so I noted my boss about captive portal.

Now my question is, is it possible to have OpnSense on internal network and just enforce Captive Portal with traffic shaping without NAT and firewall filters among VLANs?

Basical idea is that student connects to wifi, opens browser and is forced to logon to Captive portal before he/she can use internet and internet connection, banned sites and services etc. are handled by different firewall and opnsense just shares the traffic bandwidth from internet among specific VLANs and doesn't have direct connection to internet (basically WAN and all other ethernet ports have internal IP addresses).

If so, does it require more than 1 ethernet port and what type of NICs (801.q VLAN support is one I'm sure of is required)
#3
20.1 Legacy Series / DNS Query issue
May 01, 2020, 09:40:46 AM
Hi, I have an issue with DNS queries. Whenever I type on command line nslookup domain1.com the answer is always same which is

non-authoritative answer
Name: domain1.com.com
Addresses: 79.124.78.101
                   79.124.78.101

BUT when I type nslookup domain1 it gives .com end automatically and also IPs for it

Internet connections etc. work just fine, it's just bugging me as fuck having to leave .com from queries from each request

I'll submit image of what my issue is

#4
Tutorials and FAQs / Setting up Opnsense with router
December 16, 2018, 09:32:47 AM
Hi, I am trying to get my OPNsense to work with my router but can't figure it out because obviously both have totally different GUIs and descriptions to different features.

First of all I have Asus RT-AC66U B1 router and Zyxel GS 1900-8 10/100/1000 Mb/s Manageable switch which is not in use since I figured I wouldn't really need it unless I would have to setup VLANs etc.

My problem is that every time I connect my computer and PS4 etc to router which is connected to OPNsenses LAN port, I get warnings about having "strict NAT", and I can't open ports to anywhere even when I set my router to access point mode (which will disable firewall, NAT and connects the router to first network it can find which is OPNsense) and also network speed is sometimes much slower than my average speeds.

I've tried basic routing and from my router everything works fine but OPNsense can't traceroute or ping to my router (in other words it doesn't find my router at all) yet I am connected to the internet and everything except port forwarding works just fine.

I have watched all guides I can find about how to create port forwarding, routing, 1:1 nat and even virtual IPs on OPNsense and none of them works (few of them even locked my out from OPNsense and had to re-install the whole OS since I couldn't login as root on console).

My question is this, is it possible to have a router with different internal network taking care of port forwarding as long as those ports are also open on OPNsense and if so, how the heck it is done, or would it be possible to use my switch as kind of a gateway for both opnsense and router and still be able to use OPNsense as a firewall for the router as it happens, if I do that all 3 devices will get their own public IPs in different networks?

I also have 3rd ethernet card which I could install on OPNsense, but would it require static IP or anything else or would it do things automatically as long as I set router to Wireless router mode?