OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • Profile of JasonJoel »
  • Show Posts »
  • Messages
  • Profile Info
    • Summary
    • Show Stats
    • Show Posts...
      • Messages
      • Topics
      • Attachments

Show Posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

  • Messages
  • Topics
  • Attachments

Messages - JasonJoel

Pages: 1 [2]
16
Zenarmor (Sensei) / Re: Home Users - 100 Device Limit
« on: April 24, 2021, 02:14:46 am »
I can stay <100 if I exclude my IoT VLAN. So that's what I'm doing.

Honestly, now that I've worked around the device count limit, I immediately ran into the # of policies limit. 2+default restricts how I would like to use the product. 5+default would be better. :)

17
Zenarmor (Sensei) / Number of Policies
« on: April 24, 2021, 02:09:33 am »
What is the rational for only letting Home users have 2 configurable profiles? Seems like an odd limitation, that very much limits how I can use the product.

I don't want/need 100 policies, but something like 5 sure would go a long way towards being able to limit things the way I want to... I really need 2 different kid profiles, a guest profile, an adult profile, and the default.

Anyway, consider it a feature request / wish list item.

18
Zenarmor (Sensei) / Re: Home Users - 100 Device Limit
« on: January 29, 2021, 10:07:37 pm »
A very fair point of course.

Although, I will say the 50 device limit (with no reasonable way for a home user to get to 100 or 150) is exactly why I don't use Sophos at all. So they get $0 instead of something >$0 from me.

I think in the end the question is whether companies want to offer products to home users, or if they want to focus on business only.

IP devices on home networks are growing very fast between TVs, tablets, phones, watches, game consoles, roku/streaming devices, voice assistants, handheld gaming systems, etc. And home users simply aren't going to pay multiple hundreds of dollars/year for a tool like this. So in my opinion, long term these companies are going to have to continue to raise the limits for home users while also figuring out ways of making sure the home licenses are not mis-used by businesses (thus losing revenue), or provide an easy way to exclude devices from monitoring/license count WITHOUT having to re-architect their networks.

In the end, I'll be fine - I have the technical know-how to split up my networks and re-architect. But many home users do not have that know-how or hardware to do so.

19
Zenarmor (Sensei) / Re: Home Users - 100 Device Limit
« on: January 27, 2021, 08:35:27 pm »
In any case, I'm going to go through the work and make a few more VLANs and move devices around to stay under 100 devices on the monitored interfaces.

20
Zenarmor (Sensei) / Home Users - 100 Device Limit
« on: January 26, 2021, 03:38:50 pm »
Any possibility that SV would consider relaxing/expanding the 100 device limit for HOME users?

I am a home user, and already have >100 IPs (maybe 115-120 right now) between my LAN and IoT networks.

I have a ton of IoT devices - 80+ between TVs, TiVos, XBOXes, a bunch of Google Home devices, some VMs, Home Automation hubs, etc - seems like EVERYTHING has an IP address adn connection these days.

But even on the non-IoT side there are a bunch of IPs between phones, tablets, watches, UniFi APs/Switches, VMs, and desktops.

It all adds up to the fact that I can't stay under 100 and still monitor everything I want to.

In a perfect world I wouldn't have to further segment my IoT devices to try and stay under the artificial 100 device limit. Please consider this!

Or if not that, then at least add thew ability to ignore/exclude specific IPs in a subnet and have those not count towards the licensing count (I looked and I don't see anything like that on your short or long term road maps). Then at least I could exclude the lesser device and still analyze the traffic on some of the less trusted IoT devices.

Thanks for your consideration.

21
Zenarmor (Sensei) / Re: Device count
« on: January 22, 2021, 02:52:25 pm »
I'm still struggling to see how I'm going to use Sensei in my home network environment with the 100 device limit.

I have ~80 IoT devices on their own VLAN. Some of these devices I DO want to protect, some I don't. Without the ability to exclude some assets in that VLAN from monitoring, I can't monitor anything on that VLAN without going over on device count.

I have ~9 more months on my subscription, but without either a higher device limit or a way to control what gets monitored/vs not monitored in Sensei I doubt I'll be renewing as I simply am not getting the full benefit out of it.

22
Zenarmor (Sensei) / Re: Device count
« on: December 04, 2020, 08:03:25 pm »
Thanks.

I have an OpenVPN server setup that I use to connect to my home network when I am away. There are only 2 users/devices setup to connect to the system.

Another question - is there any way to protect only SOME devices on a LAN/subnet, and not have all the ones you don't care about get counted in the licensing? I can think of application for this on IoT networks for sure where I may not care about a XBOX/PlayStation but may care about some limited number of VMs/general purpose computing devices.

23
Virtual private networks / Re: WireGuard setup required reboot, Unbound available on WAN
« on: November 29, 2020, 05:14:47 pm »
Quote from: yearski on November 21, 2020, 06:05:11 pm
Hope that helps someone else. The setup is really quite simple and it works great. But geez, I spent a lot of befuddled time to get there. (When in doubt, reboot!)

I had a heck of a time getting wireguard to work when I installed it yesterday. In my case I also had to reboot before DNS resolution would work (yes, I had an access rule added in Unbound for the network). Interestingly the network showed up in the default Unbound access rules after rebooting (was not in there before reboot), so I removed my custom access rule.

Out of curiosity, did you end up assigning the wg0 as an interface? I did, but not 100% sure I really had to. Still pretty new to opnsense, so fumbling my way through it.

24
Zenarmor (Sensei) / Re: Device count
« on: November 29, 2020, 05:03:45 pm »
I do, for wireguard. For that I had to forward UDP/51820 from WAN to LAN.

25
Zenarmor (Sensei) / Re: Device count
« on: November 29, 2020, 03:44:26 pm »
Quote from: mb on October 05, 2020, 07:23:59 pm
We do not intend to "cheat" in any way. Please reach out to the team via "Contact us" menu located in the upper right hand corner of the UI and team will follow up with you to check.

I have a similar concern. I have a home premium subscription. I am only protecting a couple of networks on my firewall - not all (I have my IoT network excluded as I'm sure that would put me over 100 devices). The interfaces I'm protecting have maybe 40 devices max. But my count shows a very high number - presumably from the interfaces I'm not protecting.

Since my count is over 100 total, what is sensei going to actually do?

Here are my stats:
Active Users: 0
Unique Local Devices: 101
Unique Local Ip Address: 112
Unique Remote Ip Address: 3071

Pages: 1 [2]
OPNsense is an OSS project © Deciso B.V. 2015 - 2024 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2