Recent posts

#21
25.7, 25.10 Series / Re: 25.7.8 upgrade
Last post by Baron_Backdoor - Today at 08:02:08 PM
Quote from: Boxer on Today at 07:51:18 PM
Quote from: Baron_Backdoor on Today at 07:37:09 PM
Quote from: Boxer on Today at 07:18:20 PMJust chiming in to say I'm getting intermittent packet loss on the ipv6 connectivity audit. I've done 3 audit checks. The first dropped all packets. the second dropped one packet and the third didn't drop any. I had no issues updating and I don't have any ipv6 issues outside of this audit.

Yeah i still have internet so wife can watch netflix happily i just don't like things broken or half-ars£d lol and this telling my it installed but it still needs to install it is broken.
I appreciate that and I hope you get it fixed asap but i was referring to Franco's response about the ipv6 being broken and maybe the cause? Maybe I misunderstood.
Apologies,  i should have quote replied

No apology required :)

I just got into a reply roll, I think i've used the audit fuction a handfull of times but never the connection one so your experiance is better than mine
#22
Happy thanksgiving,

I've been wanting to mess with TOR for a while, but always get frustrated trying to set it up.  No matter what, it just never seems to work no matter what guide I follow, and I'm hoping someone can steer me to what I'm doing wrong.

Right now I have the TOR plugin installed, service is running, and the configuration for the plugin is listening on the LAN interface.  The transparent proxy is enabled, port 9040, DNS port 9053.

There is a VLAN called TOR as opt4 vlan01 with a static IP set of 172.16.200.1.

I created NAT port forward rules in the screenshot, and there are matching rules showing in the LAN rules.
You cannot view this attachment.

I'm probably just completely turned around on this, and trying to follow online guides, most of which are written for people with more understanding, and many are likely completely outdated.  Can someone point me to what is wrong here?  If I enable these rules, web pages don't open, they just time out.

Thanks!



#23
25.7, 25.10 Series / Re: 25.7.8 upgrade
Last post by Boxer - Today at 07:51:18 PM
Quote from: Baron_Backdoor on Today at 07:37:09 PM
Quote from: Boxer on Today at 07:18:20 PMJust chiming in to say I'm getting intermittent packet loss on the ipv6 connectivity audit. I've done 3 audit checks. The first dropped all packets. the second dropped one packet and the third didn't drop any. I had no issues updating and I don't have any ipv6 issues outside of this audit.

Yeah i still have internet so wife can watch netflix happily i just don't like things broken or half-ars£d lol and this telling my it installed but it still needs to install it is broken.
I appreciate that and I hope you get it fixed asap but i was referring to Franco's response about the ipv6 being broken and maybe the cause? Maybe I misunderstood.
Apologies,  i should have quote replied
#24
Hardware and Performance / Re: Network behind a double NA...
Last post by kernew - Today at 07:50:43 PM
@meyergru, @Maurice - thanks for the answers.

Unfortunately, I don't have access to the Deco S7, so there's nothing I can do (it's a dormitory and I'm an end user).

If the WiFi (on PCIE) doesn't work with Proxmox+OPNsense - will it work on a separate miniPC with only OPNsense (Intel N100/N150 and 4x 2.5G)?

What are some other solutions for building my own network with internet 'from WiFi' (Deco S7)?

How do people solve the problem of having 'their own' network in hotels or on vacation?
-----------------------
Deco has 3x LAN ports and there's a chance I'll be able to connect via cable - so in that case: Deco > cable > GMKtec LAN1 and LAN2 > switch. And then from the switch to the AP, desktop, and the rest - will this improve the situation?
#25
25.7, 25.10 Series / Re: 25.7.8 upgrade
Last post by Baron_Backdoor - Today at 07:37:09 PM
Quote from: Boxer on Today at 07:18:20 PMJust chiming in to say I'm getting intermittent packet loss on the ipv6 connectivity audit. I've done 3 audit checks. The first dropped all packets. the second dropped one packet and the third didn't drop any. I had no issues updating and I don't have any ipv6 issues outside of this audit.

Yeah i still have internet so wife can watch netflix happily i just don't like things broken or half-ars£d lol and this telling my it installed but it still needs to install it is broken.
#26
25.7, 25.10 Series / Re: 25.7.8 upgrade
Last post by Baron_Backdoor - Today at 07:35:16 PM
Quote from: franco on Today at 07:00:03 PMIt's just your IPv6 connectivity that's busted. Try System: Settings: General: check "Prefer IPv4" option.

I've checked the Prefer IPv4 option and it's already set unfortunatly.

Did a test and only pkg.opnsense.org that doesn't want to play.

PS C:\Users\Foz> ping pkg.opnsense.org

Pinging pkg.opnsense.org [2001:1af8:5300:a010:1::1] with 32 bytes of data:
Request timed out.
Request timed out.
Request timed out.
Request timed out.

Ping statistics for 2001:1af8:5300:a010:1::1:
    Packets: Sent = 4, Received = 0, Lost = 4 (100% loss),
PS C:\Users\Foz> ping bbc.co.uk

Pinging bbc.co.uk [2a04:4e42::81] with 32 bytes of data:
Reply from 2a04:4e42::81: time=11ms
Reply from 2a04:4e42::81: time=10ms
Reply from 2a04:4e42::81: time=9ms
Reply from 2a04:4e42::81: time=9ms

Ping statistics for 2a04:4e42::81:
    Packets: Sent = 4, Received = 4, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 9ms, Maximum = 11ms, Average = 9ms
PS C:\Users\Foz>


Guess it's a rebuild as clearly a borked firmware
#27
25.7, 25.10 Series / Re: 25.7.8 upgrade
Last post by Boxer - Today at 07:18:20 PM
Just chiming in to say I'm getting intermittent packet loss on the ipv6 connectivity audit. I've done 3 audit checks. The first dropped all packets. the second dropped one packet and the third didn't drop any. I had no issues updating and I don't have any ipv6 issues outside of this audit.
#28
General Discussion / Re: new setup cannot reach lin...
Last post by muusemuuse - Today at 07:11:15 PM
I did see that.  On the host, I see 4 queues are already enabled on each interface.  I made sure to disable the ipv6 multicast snooping as directed in the link by setting nmcli connection modify i226vLAN ipv6.method "ignore" for the interface and bridge on the host and set the XML config for the VM in virsh edit to add "trustGuestRxFilters='yes'" on the device line for the virtual NICs.  The link you posted said "You can also enable multiqueue on the VM NIC interfaces, especially, if you have multiple threads active. There is no need for enabling this in OpnSense." so I left that alone.

As per this suggestion, I turned it on in OPNsense with the tunables in the RSS guide and set the bits value to 1 as I have only given this VM 2 cores so far.  running the test again, the performance dropped to 636/38.  I had to run it twice because the upload on the first test topped out at 11.
#29
25.7, 25.10 Series / Re: 25.7.8 upgrade
Last post by franco - Today at 07:00:03 PM
It's just your IPv6 connectivity that's busted. Try System: Settings: General: check "Prefer IPv4" option.
#30
25.7, 25.10 Series / Re: (Solved?) Freeradius - can...
Last post by whatever - Today at 06:58:15 PM
Awesome, thanks!