Quote from: nero355 on Today at 06:24:33 PMWhat happens when you Enable all the Anti-Lock Out Rules for webGUI and SSH access ?
Or are they already Enabled ?!
Quote from: nero355 on Today at 06:00:54 PMWhy have both a Modem and the TP-Link in Bridge Mode there ?!
Quote from: nero355 on Today at 06:00:54 PMTo be sure :
Are you sure there is not a VM or LXC on any of these two connected to your LAN and running a DHCP Server without you knowing ?
Quote from: nero355 on Today at 06:00:54 PMWatch out with this Switch : If connected like this a wrong configuration can expose the Switch's webGUI to the Internet !!
Quote from: nero355 on Today at 06:05:55 PMSo far it seems you can't combine both so I am not sure if Endpoint-Independent NAT will solve that issue too...
Quote from: astronaut on September 29, 2026, 10:11:14 PMI do make use of more or less well designed apps on my smartphone, and I assume that the majority of apps is not available on these OSs.It depends if you like using Waydroid or not and in case of Jolla SailFish their Licensed version of the OS has integrated Android Emulation for Android apps :)
Or is my assumption wrong?
Quote from: bamf on Today at 05:26:42 PMI can't tell you that yet, but to solve Strict NAT issues and moving to Moderate NAT that is the way to go :)Quote from: nero355 on Today at 05:19:26 PMSee Post #1 => https://forum.opnsense.org/index.php?topic=52419.msg270603#msg270603 ;)
Why? What's the benefit of Static Port over Endpoint-Independent NAT?
Quote from: BoerBart on September 29, 2026, 08:33:36 PMNetwork setupWhy have both a Modem and the TP-Link in Bridge Mode there ?!
Modem of provider --> TP-Link archer AX50 (bridge mode) --> TP-Link TL-SG108E switch --> single NIC Mini PC.
QuoteSwitch port layoutTo be sure :
Port 2 is Single NIC Mini PC #1
Port 2 is Single NIC Mini PC #2
QuoteSwitch VLAN (802.1Q) configurationWatch out with this Switch : If connected like this a wrong configuration can expose the Switch's webGUI to the Internet !!VLAN ID VLAN Name Member Ports Tagged Ports Untagged Ports
1 Default 1-8 1-8
QuoteAll firewall rules that are either directly on the LAN interface, or the rule itself contains multiple interfaces, including LAN, are exported to a csv file that can be downloaded here:It seems you only have the two Default Any to Any Rules for IPv4 and IPv6 active for the LAN Interface so I guess that's OK.
https://filebin.net/aer3hx75u8wj72il