Recent posts

#1
26.7 Series / SOLVED: interface works from U...
Last post by jensk - Today at 01:29:23 PM
Hi all,

this is more a information for other people. I had the problem that the network interfaces did show connections when booting from USB Stick, but not anymore when booting from SSD.

I found the problem myself, but maybe some has the same problem.

When booting from USB all interfaces are configured as UP.
When booting from SSD that is not the case. Only interfaces that are configured are set to up ;-)
simply run ifconfig ix0 up helpsm or whatever you interfaces name is.

May it helps some to save the 3 hours it took me to find it.

CU
Jens
#2
26.7 Series / Re: Hasta La Vista // Let Ever...
Last post by Nullman - Today at 11:25:08 AM
Yup. Good luck with Sophos. We hope it serves you well for years to come.
#3
26.1, 26,4 Series / Re: IPTV stopped working after...
Last post by ou1 - Today at 10:56:32 AM
I had some more time to debug a bit, or at least to gather some more information.

LAN interface em0 is Intel I219-LM
WAN interface is vlan01 with parent ixl0 Intel X710

tcpdump -nvi em0 igmp shows messages like this when changing channels:
192.168.2.20 > 224.0.0.106: igmp v2 report 224.0.0.106
192.168.2.30 > 239.186.68.2: igmp v2 report 239.186.68.2
192.168.2.30 > 239.255.255.250: igmp v2 report 239.255.255.250
192.168.2.1 > 224.0.0.1: igmp query v2
192.168.2.30 > 239.255.255.250: igmp v2 report 239.255.255.250
192.168.2.30 > 224.0.0.251: igmp v2 report 224.0.0.251
192.168.2.30 > 239.186.68.2: igmp v2 report 239.186.68.2
192.168.2.30 > 224.0.0.2: igmp leave 239.186.68.2
192.168.2.30 > 239.186.68.202: igmp v2 report 239.186.68.202
192.168.2.1 > 224.0.0.1: igmp query v2
192.168.2.20 > 224.0.0.106: igmp v2 report 224.0.0.106
192.168.2.30 > 224.0.0.2: igmp leave 239.186.68.202
192.168.2.30 > 239.186.64.4: igmp v2 report 239.186.64.4
192.168.2.30 > 239.255.255.250: igmp v2 report 239.255.255.250
192.168.2.30 > 239.186.64.4: igmp v2 report 239.186.64.4

tcpdump -nvi vlan01 igmp has no output

igmpproxy -ndv /usr/local/etc/igmpproxy.conf shows this when starting, then nothing more:
adding VIF, Ix 0 Fl 0x0 IP 0x0102a8c0 em0, Threshold: 1, Ratelimit: 0
adding VIF, Ix 1 Fl 0x0 IP 0x787d0290 vlan01, Threshold: 1, Ratelimit: 0
Joining group 224.0.0.2 on interface em0
Joining group 224.0.0.22 on interface em0

#4
26.7 Series / Re: Hasta La Vista // Let Ever...
Last post by Monviech (Cedrik) - Today at 09:26:18 AM
The default rule is a last matching (non-quick) rule so you could just have created your own quick matching block rule at the end.

Anyway have fun with your Sophos firewall, no shame in using something different.
#5
26.7 Series / Hasta La Vista // Let Everythi...
Last post by RMLNZ - Today at 09:13:33 AM
I like the notion of open source.

OPNSENSE is beautifully crafted.

BUT .......

I hate the fact that most of the traffic on my OPNSENSE firewall gets passed by the rule that says "let everything out from the firewall itself".

A firewall should only pass traffic that is explicity approved otherwise the firewall is really acting more like a router.

So I downloaded the free Sophos firewall and had it up and running in 5 minutes.

#6
Hardware and Performance / Re: which coreboot payload
Last post by superblob - Today at 08:55:55 AM
Can I ask which Qotom Box you succesfully installed Coreboot? I have Q730G5 which still works great but hasn't seen a bios update for long time...
#7
General Discussion / Asymmetric routing of manageme...
Last post by userfw - August 22, 2026, 10:46:08 PM
I am experiencing some strange issues with management traffic (https and ssh) over a multi-WAN configuration: TCP SYN goes to one of the interfaces whose address I'm trying to connect to and return traffic exits from the other interface with higher gateway priority hence chosen as default, I thought that this wasn't supposed to happen with reply-to.

There aren't any PBRs or static routes that can influence this choice. I have another opnsense instance elsewhere configured almost identically that is not exhibiting this behaviour.

Any hints at where to look?
#8
Tutorials and FAQs / Re: OPNsense does not recogniz...
Last post by Ice21 - August 22, 2026, 10:42:49 PM
Thank you for the clarification! I managed to get it to work. With your response, link, and this video, I got ethernet connection now. I bridged OPT1 (Netgear router) and OPT2 (network switch) and assigned them to LAN.
#9
General Discussion / Settings tab position in Autom...
Last post by camellia - August 22, 2026, 10:12:31 PM
Hi everyone

In "Interfaces: Neighbors: Automatic Discovery," the Settings tab is located in the first tab position (the most left tab), while the Discovered Hosts tab is located in the last tab position (the most right one). With this order, the Discovered Hosts is not displayed first when a menu item is selected.

Is this the intended order?

In "Reporting: Health" and "Reporting: Unbound DNS", the main information tab is located in the first tab position, while Settings tab is located in the last tab position. With this order, the main information is displayed first when a menu item is selected.

I think this is the natural order.
#10
26.1, 26,4 Series / Re: Upgrade questions
Last post by zuzuvela - August 22, 2026, 10:07:51 PM
Hi Patrick,

OK, thank you, is this visible in the Firewall page?

What do you think about the other 2 items?

Thank you.