Hi, my home network looks even more complicated, and your questions seem to be like someones who is not completely familiar with private ranges... (no harm meant, but I think, it still looks like a hobbyists exercise) https://en.wikipedia.org/wiki/Private_networkdon't use 192.0.x.x, just 192.168.x.x or see the link for 10.x.x.x etc. So you could just have one interface configured as LAN with 10.1.1.1/24 and one as WAN initially. Then after you can access the GUI over the LAN Interface, you add new interfaces Like MGT with 10.1.2.1/24, and so on. Then you make sure to configure rules so that a PC behind MGT can reach the Opnsense GUI and if verified, you just change your ruleset so that LAN can't access the GUI any more. You set up NAT rules to get into the internet. I don't know why do you want to use VPN to communicate between your local subnets, but do yourself a favor, don't do it... Try to read the Opnsense docs and https://homenetworkguy.com/how-to/configure-opnsense-firewall-rules/ I don't have the time to go into more detail, but I hope I could help a bit. Petrus
2. Overall I am also not really sure how the concept of "second LAN" is working on OPNsense so to act like the "initially installed LAN" into it - Do I create it, and then just copy the same pre- installed rules as into the original one ? If there is a "shortcut"- way to do it ?
3. If so, and if I go a little bit further, how to configure additional "management network" that supposed to be "blind" to Internet, and "works" with all crucial devices on all networks (it will be the only interface to access the web- interfaces of the firewalls too) - My guess is just to create "additional LAN" interfaces on the firewalls, and remove all rules but the anti-lookout one ?
.oO(Small home project with this company like network schema?)
Quote from: hbc on February 06, 2020, 01:55:50 pm.oO(Small home project with this company like network schema?)GNS3 is very versatile nowadays, and easy to use
eeehhhhh.... https://en.wikipedia.org/wiki/Reserved_IP_addresses ***cough***
...192.0.2.0/24 (reserved for documentation)....
Quote from: rickeyw on February 07, 2020, 11:28:54 amQuote from: hbc on February 06, 2020, 01:55:50 pm.oO(Small home project with this company like network schema?)GNS3 is very versatile nowadays, and easy to use Is there a browser plugin or alike? Would be nice for the forum...
Quote from: chemlud on February 07, 2020, 12:30:34 pmQuote from: rickeyw on February 07, 2020, 11:28:54 amQuote from: hbc on February 06, 2020, 01:55:50 pm.oO(Small home project with this company like network schema?)GNS3 is very versatile nowadays, and easy to use Is there a browser plugin or alike? Would be nice for the forum...It is coming with a web- interface too, which is still in dev.See the attached.Best,