Home
Help
Search
Login
Register
OPNsense Forum
»
English Forums
»
General Discussion
»
collapse router with public subnet and firewall in one configuration
« previous
next »
Print
Pages: [
1
]
Author
Topic: collapse router with public subnet and firewall in one configuration (Read 1031 times)
relume
Newbie
Posts: 4
Karma: 0
collapse router with public subnet and firewall in one configuration
«
on:
July 09, 2021, 02:18:56 pm »
Hello
We would like to switch our Internet-Connection infrastructure to OpenSense.
Our actual Internet-Connection infrastructure consists on a Router with a fixed public IP (fibre connection on VLAN 10) and routes to our (fixed) public IP-subnet. Our Firewall routes/maps this public subnet to our internal/private network and DMZ. Router and Firewall are both VMs.
We would like to ask the community, if it would be possible to collapse router and firewall to one single OpenSense configuration? If this would be possible, we would also like to ask, if such an approach is also reasonable in the sense of performance and security?
Many thanks in advance for any hint
Logged
fsebera
Newbie
Posts: 38
Karma: 2
Re: collapse router with public subnet and firewall in one configuration
«
Reply #1 on:
July 23, 2021, 07:03:38 pm »
Hi Relume,
The quick answer is maybe.
Technically what you are seeking to do is possible but throughput through OPNsense will be mostly controlled by the physical host, memory, CPU, Disks dedicated to the OPNsense setup. Plan on having 2 FWs and for true backup/failover, 2 physical servers – especially if your production environment is critical. The way you find out if your environment is critical is to have your only FW fail. If you are still employed the next day, you’re good. 😊
Get this new setup fully functional in a lab environment before moving over to your new plan. As you can see, most folks do not respond to questions and the documentation is …… well you will be the judge on that.
Good Luck
Frank
Logged
Print
Pages: [
1
]
« previous
next »
OPNsense Forum
»
English Forums
»
General Discussion
»
collapse router with public subnet and firewall in one configuration