Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Topics - droumanet

#1
Hello everybody,
This weekend I've worked on unbound dns configuration and it works well.
My only concern is about signification of colors.


If someone has the answer for these colors, I'm interested (I understand red is blocked and green passed)
Thanks ;)
#2
I'm trying to use the transparent proxy functionality with my OPNsense firewall but I'm unsure it's ok.
First of all, I've followed the two tutorials:
I can read the list, choose categories, then download and apply.

On client side, I've downloaded the root certificate and it works for some websites... but a lot of sites fall on "access denied" squid error page.
My question is about the order: is the proxy block all but not access control list (categories) or it block categories and should let go for all others websites?
#3
I've a good hardware (Intel i5 6 cores, 12 GB RAM, 250GB harddrive), but when activating squid web proxy, after a random time, all access to Internet fails.

Here are some logs I've captured before stopping redirection to squid. Then all become right.

Date                            Gravité Process     Ligne
2024-12-19T10:51:28.446 949822 172.31.0.94 TCP_TUNNEL/200 378 CONNECT ads.betweendigital.com:443 - ORIGINAL_DST/188.42.196.115 -
2024-12-19T10:51:28.446 939400 172.31.0.94 TCP_TUNNEL/200 6692 CONNECT user-sync-api.anyclip.com:443 - ORIGINAL_DST/52.4.153.165 -
2024-12-19T10:51:28.446 930495 172.31.0.97 TCP_TUNNEL/200 0 CONNECT nuage03.apps.education.fr:443 - ORIGINAL_DST/194.167.72.51 -
2024-12-19T10:51:28.446 10130846 172.31.0.51 TCP_TUNNEL/200 7239 CONNECT client.wns.windows.com:443 - ORIGINAL_DST/172.172.255.218 -
2024-12-19T10:51:28.446 1565178 172.31.0.60 TCP_TUNNEL/200 463 CONNECT mqtt-mini.facebook.com:443 - ORIGINAL_DST/157.240.196.34 -
2024-12-19T10:51:28.446 999533 172.31.0.1 TCP_MISS_TIMEDOUT/502 38071 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:51:28.446 999533 172.31.0.1 TCP_MISS_TIMEDOUT/502 13542 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 120589 172.31.0.158 TCP_TUNNEL/200 6877 CONNECT pixel.rubiconproject.com:443 - ORIGINAL_DST/69.173.146.5 -
2024-12-19T10:49:38.720 65435 172.31.0.158 TCP_TUNNEL/200 5267 CONNECT www.googleadservices.com:443 - ORIGINAL_DST/172.217.29.98 -
2024-12-19T10:49:38.720 65435 172.31.0.158 TCP_TUNNEL/200 5267 CONNECT www.googleadservices.com:443 - ORIGINAL_DST/172.217.29.98 -
2024-12-19T10:49:38.720 12554 172.31.0.38 TCP_TUNNEL/200 1054 CONNECT x.com:443 - ORIGINAL_DST/104.244.42.1 -
2024-12-19T10:49:38.720 908495 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908495 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908496 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908496 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908496 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908496 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908496 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908496 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908497 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908497 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908497 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908497 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908497 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908498 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908498 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908498 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908498 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908498 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908499 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908499 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908499 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908499 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908499 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908500 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908500 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908500 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908500 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908500 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908501 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908501 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908501 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908501 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908501 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908502 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908502 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908502 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908502 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908502 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908502 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908503 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908503 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908503 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908503 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908503 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908504 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908504 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908504 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908504 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908505 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908505 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908505 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908505 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908505 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908530 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908530 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908530 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908530 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908531 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908531 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908531 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908531 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908531 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908532 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908532 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908532 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908532 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908532 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908532 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908533 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908533 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908533 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908533 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908533 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908534 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908534 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908534 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908534 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908534 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908535 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908535 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908535 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908535 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908535 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908536 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908536 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908536 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908536 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908536 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908537 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908550 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908550 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908550 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908551 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908551 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908551 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908551 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908551 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908566 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908566 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908566 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908566 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908567 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908567 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 907971 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 908087 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/504 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 text/html
2024-12-19T10:49:38.720 8724 172.31.0.1 NONE_NONE/000 0 CONNECT 172.31.0.1:443 - HIER_NONE/- -
2024-12-19T10:49:30.069 81 172.31.0.1 TCP_TUNNEL/200 0 CONNECT 172.31.0.1:443 - ORIGINAL_DST/172.31.0.1 -
2024-12-19T10:49:30.069 899916 172.31.0.1 TCP_MISS_TIMEDOUT_ABORTED/000 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 -
2024-12-19T10:49:30.069 80 172.31.0.1 NONE_NONE/000 0 CONNECT 172.31.0.1:443 - HIER_NONE/- -
2024-12-19T10:49:29.996 899843 172.31.0.1 TCP_MISS_ABORTED/000 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 -
2024-12-19T10:49:29.989 2 172.31.0.1 TCP_TUNNEL/200 0 CONNECT 172.31.0.1:443 - ORIGINAL_DST/172.31.0.1 -
2024-12-19T10:49:29.989 899836 172.31.0.1 TCP_MISS_ABORTED/000 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 -
2024-12-19T10:49:29.989 1 172.31.0.1 NONE_NONE/000 0 CONNECT 172.31.0.1:443 - HIER_NONE/- -
2024-12-19T10:49:29.988 7 172.31.0.1 TCP_TUNNEL/200 0 CONNECT 172.31.0.1:443 - ORIGINAL_DST/172.31.0.1 -
2024-12-19T10:49:29.988 899836 172.31.0.1 TCP_MISS_ABORTED/000 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 -
2024-12-19T10:49:29.988 1 172.31.0.1 NONE_NONE/000 0 CONNECT 172.31.0.1:443 - HIER_NONE/- -
2024-12-19T10:49:29.988 899835 172.31.0.1 TCP_MISS_ABORTED/000 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 -
2024-12-19T10:49:29.987 13 172.31.0.1 TCP_TUNNEL/200 0 CONNECT 172.31.0.1:443 - ORIGINAL_DST/172.31.0.1 -
2024-12-19T10:49:29.987 899834 172.31.0.1 TCP_MISS_ABORTED/000 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 -
2024-12-19T10:49:29.987 6 172.31.0.1 NONE_NONE/000 0 CONNECT 172.31.0.1:443 - HIER_NONE/- -
2024-12-19T10:49:29.981 15 172.31.0.1 TCP_TUNNEL/200 0 CONNECT 172.31.0.1:443 - ORIGINAL_DST/172.31.0.1 -
2024-12-19T10:49:29.981 899829 172.31.0.1 TCP_MISS_ABORTED/000 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 -
2024-12-19T10:49:29.981 7 172.31.0.1 NONE_NONE/000 0 CONNECT 172.31.0.1:443 - HIER_NONE/- -
2024-12-19T10:49:29.980 899828 172.31.0.1 TCP_MISS_ABORTED/000 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 -
2024-12-19T10:49:29.973 16 172.31.0.1 TCP_TUNNEL/200 0 CONNECT 172.31.0.1:443 - ORIGINAL_DST/172.31.0.1 -
2024-12-19T10:49:29.973 899822 172.31.0.1 TCP_MISS_ABORTED/000 0 GET http://172.31.0.1/ - ORIGINAL_DST/172.31.0.1 -

What's could be wrong, my configuration or is there a bug? Help...

#4
Hi everybody,

I like OPNsense and I use it at my school, for my students. OPNsense protect the classroom and permit them to connect to their classroom computer (servers farm).
However, I can't figure how to use OpenVPN log's to manage how much time a user still connected.
I've got the start of authentication through AD, but never the end of communication.
I've read a post on OpenVPN (seems to be old) on disconnect event missing (https://serverfault.com/questions/681249/openvpn-doesnt-log-user-disconnect-event).

Any idea if it's possible and how to do this?

Thanks,