OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • Profile of packetmangler »
  • Show Posts »
  • Messages
  • Profile Info
    • Summary
    • Show Stats
    • Show Posts...
      • Messages
      • Topics
      • Attachments

Show Posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

  • Messages
  • Topics
  • Attachments

Messages - packetmangler

Pages: 1 [2]
16
20.1 Legacy Series / Re: two dns servers ? one for parents and one for kids?
« on: April 03, 2020, 09:16:18 pm »
I would look into running bind9 and then using views to separate adult requests and child requests.

Should be pretty straightforward since you have separate networks.

Traffic from X network gets this view and forwarders.
Traffic from Y network gets this view and these forwarders.

Note: I've not used the bind package on opnsense so what I just recommended might be of no use since it may or may not support views.

Note2: Just installed it for a quick look.  Doesn't appear to support views from the GUI. Maybe you can still tinker with things via CLI.

Any chance you can run a separate server to handle serving DNS queries?

17
Intrusion Detection and Prevention / Re: IPS not working
« on: April 01, 2020, 03:51:44 pm »
Quote from: Supermule on April 01, 2020, 12:58:33 pm
A small question??

Wouldnt it be nice to see alerts in WAN since its IPS as well??

Who is trying to enter your house and with what?

I mean its better to be safe than sorry and a lot easier to keept them out than trying to get rid of them when they are allready inside and passing traffic on LAN??

I know the ports are blocked anyways, but LAN doesnt tell me what they are trying to accomplish before it happens...

I see alerts from the WAN side of things.  I also run Sensei so I have to use the WAN interface and, for ports that I have forwarded, I'm seeing alerts.

18
Zenarmor (Sensei) / Re: Sensei on OPNsense - Application based filtering
« on: March 04, 2020, 04:39:16 am »
Hi,
Not sure if it's a bug or not but on I've recently upgraded to v1.4 and I noticed in:

Sensei: Configuration: General: Deployment Size

Database: Elasticsearch
Deployment Size:  Home (Max 15 Devices)  <--- Here

I have the Home subscription and thought the max devices count should be 50. I checked the About: View License  page and it does show 50 devices there.  Is this something I should be concerned about?  I've not noticed anything negative so far.

Thanks!

19
Intrusion Detection and Prevention / Re: Suricata/IPS not working
« on: January 22, 2020, 07:55:27 pm »
Hello,

From my brief testing at home where IPS is working:

I would first remove the external IP from list of local addresses.  I added my external address and filtering stopped working right away.

Also, simply removing the address and clicking Apply was not enough to get the system to block again.  I had to fully stop and restart the service to get the system blocking again.

hth.

Pages: 1 [2]
OPNsense is an OSS project © Deciso B.V. 2015 - 2024 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2