OPNsens on Proxmox for home 2*VPN (intel N100 mini soft router 4*2.5Gbbps)

Started by Pro100, October 16, 2023, 04:39:32 AM

Previous topic - Next topic
Hello everyone.

Finally, I decided to dive into creating my dream home network, as well as a smart home.

After some research, I decided to order a mini PC (soft router intel N100 4*2.5Gbps ports), install Proxmox on it, and then ... I never did anything like that, so i need some help from a professional community :)

I want to:

    Send all the main traffic through OPNsense (via VPN like nordVPN or WireGuard own server, also cut off various ads, etc) - for all home users and devices, do I need another "network" for smart devices for HA?

    I also need to let my work PC through OPNsense but through different VPN, do I need to create a separate VM for this? or can it be configured within same OPNsense?

    I would like to run a HomAsistant + Zigbee2MQTT, ESPHome, and maybe Plex Servers, for now PLex is running on Synology NAS.

What is best way to run 2 VPN connection at the same time? (If it better, can I use for each VPN different LAN port on my soft router? Wi-fi router connect to lan port1 with vpn1 and then setup vpn2 on lan port 2 for work station?) is it possible?

I will be glad to any advice and instructions. Thanks!

Quote from: Pro100 on October 16, 2023, 04:39:32 AM

    I also need to let my work PC through OPNsense but through different VPN, do I need to create a separate VM for this?

No.

Quote
I will be glad to any advice and instructions.

Read the fine manuals / tutorials.

Look for the opnsense docs for the Mullvad one as an example. Notice that recently on OPN 23.7 there is a change to settings (there's a thread about that for Mullvad, OpenVPN or Wireguard, can't remember) that I think might not be reflected in docs yet. This would take care of devices going over that connection using policy routing.
That allows to define what to use and not the VPN connection.

For the work pc and another VPN, if it is a work-provided client installed on a windows pc, then for as long as this pc is left out of the other VPN, it can connect to another VPN using that client.