Recent posts

#1
25.7, 25.10 Series / Re: CVE-2025-14847 vulnerabili...
Last post by PencilHCV - Today at 09:41:27 AM
Thank you Seimus for your clarification and help!

best regards,
Hugo
#2
25.1, 25.4 Series / Re: unable to update and openV...
Last post by aniki - Today at 05:54:21 AM
any ideas?
#3
25.7, 25.10 Series / Tried DNSCrypt-Proxy ... servi...
Last post by Chrome - Today at 03:48:41 AM

I am running version OPNsense 25.7.10 (which is the latest as of this post). I decide to try DNSCrypt version 1.16 for the first time. The service simply won't start. I've made sure the port is not in use. I am using port 5353. I have enabled DNSCrypt ... and when I try to start the service... the "please wait" bar just flashes and the service does not start.

The log/General, log/Queries and log/NX are empty.

System/Log files/General does not show any DNSCrypt error and neither does "backend".

The /var/log/dnscrypt-proxy directory is empty.

I am at a loss here.. maybe this plugin is not compatible with 25.7.10?

Any help or guidenance would be most appreciated!
#4
Tutorials and FAQs / Re: HOWTO - Redirect all DNS R...
Last post by Stubby - Today at 02:33:20 AM
I don't have a "Default allow LAN to any rule". do I need it? If so, where can I find instructions? TIA
#5
25.7, 25.10 Series / Re: ISC DHCP to dnsmasq Migrat...
Last post by julsssark - Today at 12:31:25 AM
It's so weird that you can't ping the gateway. Are you sure ISC is disabled completely? Are you mixing tagged and untagged traffic on the switch port connecting the NAS devices on the VLAN?
#6
Hardware and Performance / A fresh OEM viewpoint of OPNse...
Last post by BartSimpsonInUppsala - December 31, 2025, 10:00:28 PM
I recently chatted with a hardware OEM insider, and there were a few nuggets of information I felt were worth (carefully) passing on to the OPNsense community. For privacy reasons – and out of sheer appreciation for an OEM insider opening up to consumers – I will not be disclosing the source of the comments and I have redacted anything possibly identifying. Otherwise the remarks are unadulterated.

QuoteFreeBSD added the ixgbe driver like 3-4 months ago so it is in FreeBSD 15. [personal stuff – red.] OPNsense already backported it to FreeBSD 14.3 so they have it! Good for them. I really like those guys. It doesn't appear to be "production stable" so we won't touch it until it's kernel native. And it looks like Beelink owners already discovered firmware recovery mode instabilities, thermal/firmware mismatches (NVM 1.10 vs 1.30) and Intel is just screaming "It's the OEMs!" so the E610-XT2 sounds like it's not off to a good start. I will say this, the X710s have never once locked up and required a CMOS reset or died and we have [a large sample size in the field to be able to say this with confidence – red.]. Same with our SFPs. Never had to RMA a single one.

Still, our [management – red.] and I have been talking about getting the E610s [into our products – red.] for months and we have a first run concept [product – red.] with them on the way but to go from zero to production with [multiple component – red.] qualification takes 6+ months without any major roadblocks. We have to know the new [product – red.] runs perfectly in our tests before we release it with a [warranty – red.].

Kudos to the OPNsense team for placing the new E610 integration so high on the priority list. That's the kind of thing that demonstrates leadership to OEMs and consumers alike.
#7
General Discussion / Re: opnsense shutting down
Last post by Meg - December 31, 2025, 05:51:11 PM
If you look around and don't find anything you can look in the System:Firmware:Reporter log and also generate a report from there add your contact info and you can get some help.

#8
General Discussion / Re: Unbound Not showing any ca...
Last post by Meg - December 31, 2025, 05:45:01 PM
For anyone that reads this what had happened is I had just updated adguard home just before and the when the update applied it must have applied dns caching in adguard so all the cacheing was taking place there. I have never had that turned on by an update before I'm positive I didn't check it because I never even looked at the settings, I just updated from the home page.
#9
General Discussion / Re: opnsense shutting down
Last post by sigma - December 31, 2025, 04:26:46 PM
After a few times turning the computer on and off, when I pressed the power button to turn it on from an off state it would turn on the led spin fans turn off and repeat so I guess it was the power supply and it finally gave up.So, you are right power issue it is. I have tested this with a power supply that I took out of another PC and had no issues. I have ordered a new power supply as it is a small form factor PC.

Thank you for your help.
#10
25.7, 25.10 Series / Re: ISC DHCP to dnsmasq Migrat...
Last post by muchacha_grande - December 31, 2025, 04:05:38 PM
Ok, just take into account that if you are using an alias in your "NAS allow" firewall rule and that alias takes its IP from DNS, that could be the problem because switching to Dnsmasq could make the alias table to not populate anymore with the NAS IP.
That's what I wanted to make sure.