Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - l0rdraiden

#31
In 19.7 still this isn't fixed... :-[
#32
Quote from: mb on July 31, 2019, 06:23:55 PM
Hi @l0rdraiden,

You can now do custom categorization with the help of Web Controls -> User Defined Categories. I'm guessing you'd need a bulk adding functionality for this to happen.

Would that work if we added a bulk list add functionality to User Defined Categories?

Hi @mb,

Yes adding the ability to add lists from different sources would be a nice feature. This could be IPBL or DNSBL for example from this websites.
https://github.com/collinbarrett/FilterLists
https://iplists.firehol.org/
This is more or less what pfblockerng does in pfsense but is able to remove duplicates and many other options like apply the lists only to certain ports, etc.
https://www.netgate.com/resources/videos/pfblockerng-on-pfsense.html

BTW the cloud threat intelligence that you add for bad sites or ip's is based on free lists or paid?

Why don't you include TSL inspection in the freemium version? at least for home use.
#33
Will there be an option to add external sources of Thread Intelligence to sensei?

Like new URL's or IP's to block?
#34
19.7 Legacy Series / Re: OPNSense on KVM (Virtio) ?
July 29, 2019, 08:29:21 AM
i440fx is for windows machines.

Q35 with passthrough works with pfsense 2.4 and opnsense 19.1, so I don't think is a problem with my configuration
#35
19.7 Legacy Series / Re: OPNSense on KVM (Virtio) ?
July 28, 2019, 08:42:34 PM
I am doing the passthrough correctly, it works in 19.1 but if I install 19.7 NIC's are not detected at all.
#36
19.7 Legacy Series / Re: OPNSense on KVM (Virtio) ?
July 28, 2019, 12:43:04 AM
Quote from: park0kyung0won on July 27, 2019, 09:43:17 PM
I see lots of comrades having a similar setup with me here
If you have intel i350 nics you can use SR-IOV function
Pass VFs to OPNSense instead
SR-IOV + KVM works well with OPNSense
But somewhat tricky to setup VLAN

As I said I am doing a passthrough of the NICs directly to the VM, and it doesn't work
#37
19.7 Legacy Series / Re: OPNSense on KVM (Virtio) ?
July 27, 2019, 07:28:10 PM
Quote from: unraider on July 27, 2019, 05:17:46 AM
I run OPNSense on UNRaid VM (Q35) using 8 virtual NICs (VIRTIO).

On 19.1 only Q35-2.6 worked, otherwise there were no NICs detected in OPNsense.
Since update to 19.7 there are no NICs detected anymore!!

Now I run a Backup on 19.1 again...
HELP?? thanx a lot!!

Same here, using Unraid but I have the 2 Intel 350 NICs passthrough to the VM. The exact same configuration worked in 19.1 but after upgrading to 19.7 NICs aren't detected anymore
#38
It's a PCIE card and I am using a Ryzen 2400g
#39
BTW I am using qemu and the NICs are passthrough to the VM
This same configuration worked before
#40
My network card is not recognize after the upgrade. How can I fix this, is related with the drivers?
#41
I have the same problem, is there a way to fix it?
#42
What are the plans between sensei and opensense? it will be embedded in opnsense or it will be available as a pluging at some point?
#43
Quote from: franco on July 05, 2018, 09:15:38 AM
very early stage


Cheers,
Franco

What are the plans to integrate this into opensense?
It will be as a pluging or it will be part of the core?
#44
I totally agree with you.
In general all the loging and reporting needs a complete rework.
At least having the ability to consume the logs propely

like having this fields to filter base on conditions
https://docs.sophos.com/nsg/sophos-firewall/v16058/Help/en-us/webhelp/onlinehelp/index.html#page/onlinehelp%2FSecurityPolicyEvents.html%23

https://community.sophos.com/kb/en-us/131951

For example firewall rule is X and source IP (is/is not/starts with/end with/etc)
#45
19.1 Legacy Series / Re: 19.1 development milestones
November 04, 2018, 10:01:59 AM
More pfblockerng features and better integrated by default.
Sensei as an official plugin
The ability to create allow block or temporary rules from a log entry
And something similar to SELKS in terms of reporting would be fantastic, maybe integrating it from plugins or creating something similar dedicated to opnsense
The ability to introduce range of IPs like 192.168.1.25-192.168.1.12. In alias
The ability to add more lines in a rule to introduce several IP ranges por port ranges
Alias creation should be something similar to pfsense with is better in this area