Home
Help
Search
Login
Register
OPNsense Forum
»
Archive
»
19.7 Legacy Series
»
Use a second gateway for P2P traffic.
« previous
next »
Print
Pages: [
1
]
Author
Topic: Use a second gateway for P2P traffic. (Read 4341 times)
TheCodeGeek
Newbie
Posts: 16
Karma: 0
Use a second gateway for P2P traffic.
«
on:
September 13, 2019, 12:26:30 am »
Hi folks,
I have a VPN service configured in OPNsense 19.7.4 and I want to use it exclusively for P2P traffic. I have an alias configured for the ports that I want to filter by. I want to block these ports from accessing my default gateway and force them to my second gateway. I want to force all other traffic to use the default gateway. I have been looking through the documentation, but the process to do this is unclear to me. Can anyone help?
Note: Currently, when the VPN is on, all traffic gets blocked (or is passed to the VPN and it's not working). The only way to gain access to the internet is to turn off the VPN. It would seem that OPNsense is trying to pass all traffic through the VPN, but I can't seem to figure out how to fix this. I also can't seem to figure out if I should place the rules in Floating, WAN or LAN.
«
Last Edit: September 13, 2019, 12:30:49 am by TheCodeGeek
»
Logged
mimugmail
Hero Member
Posts: 6766
Karma: 494
Re: Use a second gateway for P2P traffic.
«
Reply #1 on:
September 13, 2019, 06:01:44 am »
Which guide did you follow for setup?
Logged
WWW:
www.routerperformance.net
Support plans:
https://www.max-it.de/en/it-services/opnsense/
Commercial Plugins (German):
https://opnsense.max-it.de/
TheCodeGeek
Newbie
Posts: 16
Karma: 0
Re: Use a second gateway for P2P traffic.
«
Reply #2 on:
September 13, 2019, 10:24:05 am »
I've followed various guides. But there are a number of things I don't understand. Like do I put all of the rules in the same part of the firewall? Should I use source or destination? Do I use floating or LAN or WAN? There seem to be too many variables.
If you meant with the VPN, I acted according to the following directions modifying the details for the provider:
http://chronicgeekage.blogspot.com/2019/02/opnsense-and-pia-private-internet-access.html
«
Last Edit: September 13, 2019, 10:25:53 am by TheCodeGeek
»
Logged
TheCodeGeek
Newbie
Posts: 16
Karma: 0
Re: Use a second gateway for P2P traffic.
«
Reply #3 on:
September 14, 2019, 01:54:29 am »
I try to create rules, but it seems that the rules aren't being used. When I place a rule in Floating if I set the rule to be both in and out, on any interface, on any network, with the source and destination ports set to my port range... It seems to do nothing.
Logged
mimugmail
Hero Member
Posts: 6766
Karma: 494
Re: Use a second gateway for P2P traffic.
«
Reply #4 on:
September 14, 2019, 06:49:46 am »
Always use interface where traffic arrives first inbound. Check multi wan howto on OPNsense docs to learn how it works
Logged
WWW:
www.routerperformance.net
Support plans:
https://www.max-it.de/en/it-services/opnsense/
Commercial Plugins (German):
https://opnsense.max-it.de/
TheCodeGeek
Newbie
Posts: 16
Karma: 0
Re: Use a second gateway for P2P traffic.
«
Reply #5 on:
September 14, 2019, 08:50:42 pm »
So... WAN [IN]? I will give that a try.
Logged
TheCodeGeek
Newbie
Posts: 16
Karma: 0
Re: Use a second gateway for P2P traffic.
«
Reply #6 on:
September 14, 2019, 09:08:53 pm »
Okay, so I gave that a try... It is still allowing the traffic to come through.
Logged
mimugmail
Hero Member
Posts: 6766
Karma: 494
Re: Use a second gateway for P2P traffic.
«
Reply #7 on:
September 15, 2019, 06:47:20 am »
Can you check the live log? Then you will see what exactly is blocked.
Logged
WWW:
www.routerperformance.net
Support plans:
https://www.max-it.de/en/it-services/opnsense/
Commercial Plugins (German):
https://opnsense.max-it.de/
TheCodeGeek
Newbie
Posts: 16
Karma: 0
Re: Use a second gateway for P2P traffic.
«
Reply #8 on:
September 16, 2019, 06:55:23 am »
I'm relatively new to OPNsense. Could you please tell me how to do that?
Logged
mimugmail
Hero Member
Posts: 6766
Karma: 494
Re: Use a second gateway for P2P traffic.
«
Reply #9 on:
September 16, 2019, 07:44:16 am »
Menu : Firewall : Log : Live Log/View
There you see which packets are blocked or allowed.
Logged
WWW:
www.routerperformance.net
Support plans:
https://www.max-it.de/en/it-services/opnsense/
Commercial Plugins (German):
https://opnsense.max-it.de/
TheCodeGeek
Newbie
Posts: 16
Karma: 0
Re: Use a second gateway for P2P traffic.
«
Reply #10 on:
September 19, 2019, 01:55:33 am »
I don't know what I'm looking for. Can someone please help?
Logged
roadrage999
Newbie
Posts: 3
Karma: 0
Re: Use a second gateway for P2P traffic.
«
Reply #11 on:
September 19, 2019, 04:03:28 am »
Geek,
Read the following forum post front to back:
https://forum.opnsense.org/index.php?PHPSESSID=0fqidujgkp5roffgihk8svs0l5&topic=4979.msg19771#msg19771
This will walk you through every aspect of the setup and even has spots where others got stuck and solutions to push through. Read the firewall rules at least 3x before going and attempting to set those up.
Check, Double Check , then Triple check the post and your setup to make sure everything is in line as the initial setup may get you most of the way there and then another user post will get you home.
If your VPN client is online then its just a matter of ensuring your rules are correct and assigned to the proper interfaces.
Logged
TheCodeGeek
Newbie
Posts: 16
Karma: 0
Re: Use a second gateway for P2P traffic.
«
Reply #12 on:
September 20, 2019, 07:46:52 am »
Thank you!
Logged
Print
Pages: [
1
]
« previous
next »
OPNsense Forum
»
Archive
»
19.7 Legacy Series
»
Use a second gateway for P2P traffic.