Home
Help
Search
Login
Register
OPNsense Forum
»
English Forums
»
General Discussion
»
Firewall causing trouble in double NAT setup
« previous
next »
Print
Pages: [
1
]
Author
Topic: Firewall causing trouble in double NAT setup (Read 1886 times)
Heliox
Newbie
Posts: 6
Karma: 0
Firewall causing trouble in double NAT setup
«
on:
February 12, 2023, 07:54:36 pm »
Hello,
I am trying to run OPNsense virtualised in Proxmox with limited success.
Problem
Once the firewall is enabled the internet access on WAN stops working and likewise OPNsense is not accessible from WAN-side.
LAN interface DHCP works, but no internet access and not able to ping 192.168.0.1. In general there's no routing from LAN -> WAN
Double NAT setup configuration
1) OPNsense gets a static ip from ISP router (192.168.0.0/24) with IP 192.168.0.2 on the WAN interface. DMZ is enabled for this IP.
2) OPNsense runs DHCP 192.168.3.0/24 for virtualised clients in Proxmox and physical clients connected either by cable or wifi.
Visualised here:
https://i.ibb.co/ctwtrP6/Setup.png
(nb. proxmox 7.3)
Interface overview:
WAN -
https://ibb.co/xgqmyWd
- Block bogon networks and Block private networks disabled.
LAN -
https://ibb.co/LZXkPMT
Firewall:
WAN -
https://ibb.co/7p8FXnko
LAN -
https://ibb.co/rxtCTJj
Other:
Gateway -
https://ibb.co/cyGNTSs
Routes -
https://ibb.co/R75hDtH
NAT - default settings.
Loopback - default settings.
Unbound DNS - enabled, default settings.
Any information missing?
«
Last Edit: February 12, 2023, 08:18:35 pm by Heliox
»
Logged
bartjsmit
Hero Member
Posts: 2017
Karma: 194
Re: Firewall causing trouble in double NAT setup
«
Reply #1 on:
February 12, 2023, 08:28:58 pm »
Interfaces, WAN, Block private networks
untick and apply
Logged
Heliox
Newbie
Posts: 6
Karma: 0
Re: Firewall causing trouble in double NAT setup
«
Reply #2 on:
February 12, 2023, 08:32:52 pm »
Already unticked -
https://ibb.co/vwhn40B
Logged
Heliox
Newbie
Posts: 6
Karma: 0
Re: Firewall causing trouble in double NAT setup
«
Reply #3 on:
February 18, 2023, 10:21:49 am »
So, well. It was a problem with "block private networks". Despite being unticked during the wizard installation, they were still In interfaces wan i had to tick them, apply and then untick them and apply again. Now everythign works as expected.
// close thread.
Logged
Print
Pages: [
1
]
« previous
next »
OPNsense Forum
»
English Forums
»
General Discussion
»
Firewall causing trouble in double NAT setup