OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • Profile of darkain »
  • Show Posts »
  • Messages
  • Profile Info
    • Summary
    • Show Stats
    • Show Posts...
      • Messages
      • Topics
      • Attachments

Show Posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

  • Messages
  • Topics
  • Attachments

Messages - darkain

Pages: [1]
1
24.7 Production Series / Re: Dashboard not showing correct WAN public IP address using PPPOE
« on: August 01, 2024, 01:33:04 am »
displayed WAN IP is broken in general for me. I have a full native dual-stack WAN interface, and my WAN shows a link-local IPv6 address instead of my actual public IPv6 WAN IP.

It seems like the new widget is just guessing at random which IP address to list.

2
22.1 Legacy Series / Re: opnsense 22.1 for VMware ESXi ARM Fling on raspberry pi4B 8gb
« on: February 19, 2022, 06:43:12 am »
Quote from: efetropy on December 02, 2021, 04:00:13 pm
Did some research and found out that with open-vm-tools 11.3.0 they added support for arm64 (vmci is not working). You can read more about it here https://github.com/vmware/open-vm-tools/pull/474 and https://vincerants.com/open-vm-tools-on-freebsd-under-vmware-esxi-arm-fling/

Hey, thanks for referencing my work! Hopefully it has helped you all out. :)

I've been running earlier builds of OPNsense under ESXi ARM Fling for probably at least a year now. I guess it is about time I update to these new builds you are all putting together! :D

I'll have to switch my 16-core ARM server back over from FreeBSD bare metal to running ESXi ARM Fling instead, and see what kind of bandwidth that thing can push with dual-10gbe NICs.

3
20.7 Legacy Series / Re: First boot OK, subsequent boot no event timer?
« on: August 21, 2020, 08:39:18 am »
Is this older AMD hardware, like an Athlon X4 or similar/older era?

4
20.7 Legacy Series / Re: Can I port forward to an external/public IP?
« on: August 16, 2020, 06:55:26 pm »
This generally wont work, because the packet's return path wouldn't be hitting your NAT router.

NAT and Port Forwarding modifies the packet's destination address in-flight, but the return address remains the same. So when the destination attempts to reply to the packet, it would send it back to the original source with the modified destination. The source will see this packet, and have no idea what to do with it, because its local state table will have no matches for [original source] + [new destination]

Instead, a proxy service like HAProxy would work. Or, if this is web traffic, a service like Nginx would work as well.

5
20.7 Legacy Series / Re: VPN and Skype keep disconnecting
« on: August 11, 2020, 04:50:56 pm »
There is a huge difference in how skype, vpn, and streaming media all work. There is still a chance that your "trusted" LAN may also be experiencing issues. Streaming video services pre-download and buffer a certain amount of content before playing it (10s of seconds to a few minutes of content), and have the ability to quickly re-establish a connection to the same or different server to maintain smooth playback. Skype doesn't have this luxury due to the low-latency nature of bi-directional human communication. For the time, however, I'd suggest running a wired connection from your machine directly to the router to eliminate any stability concerns with the wifi access.

6
20.7 Legacy Series / Re: VPN and Skype keep disconnecting
« on: August 11, 2020, 07:30:00 am »
Without any information whatsoever about your particular configuration, there is little we could possibly do to help.

For instance, is the VPN software running on OPNsense itself, or is it running on your desktop? What type of VPN is it in the first place? Is Skype traffic going over that VPN connection when it has issues? Is other traffic that is stable going over that same VPN connection? There are a lot of variables in play here, even beyond just this, that could effect your network performance and stability.

7
20.7 Legacy Series / Re: BUG - DHCP "static" leases - actually reservations
« on: August 10, 2020, 03:00:03 am »
Different environments use different terminology. This is common across all of computing. "Static Lease" is a term used in other routers, too. There will never be a 100% compatibility in terms between two different vendors for various reasons.

8
20.7 Legacy Series / Re: One issue after the next
« on: August 05, 2020, 07:02:43 pm »
As an FYI, the issues with XBox NAT has nothing to do with UPnP at all.

OPNsense for security reasons uses port randomization during NAT, and this breaks peer-to-peer communication of game consoles. This issue effects XBox, PlayStation, Nintendo Switch/WiiU/DS, and even some desktop games.

All you need is essentially a static DHCP lease for the game console, set hybrid NAT type, and then create a NAT rule with static port enabled for the given console's IP address.

https://ultramookie.com/2020/05/opnsense-xbox-live/


Also, VLAN tagging issues are generally not an OPNsense firmware issue, but a FreeBSD driver issue. These are generally fairly easy to overcome, but without knowing which NICs are being used, there isn't much I can say to that.

9
20.1 Legacy Series / Re: Zerotier plugin cpu issues
« on: May 23, 2020, 07:26:44 am »
Do you have routes setup between the LANs of the two OPNsense boxes over ZeroTier? If so, this is a known issue with ZeroTier where it attempts to use the LAN address instead of the WAN address for communication, then fails, then reverts back to WAN. This flapping back and forth causes dropped packets and CPU spikes.

https://github.com/zerotier/ZeroTierOne/issues/779

Pages: [1]
OPNsense is an OSS project © Deciso B.V. 2015 - 2024 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2