Routing Help

Started by zimbawe998@mail.com, December 16, 2020, 10:19:01 PM

Previous topic - Next topic
Hi,
We are implementing a new OPNSense on 10G Network on Dell Server with 10G interface.
This is the scenario
OPN 20.7.5 on HA
NIC1 - WAN
NIC2 VLAN X - LAN -> Routing/FW with about 250 /24 (Internal and MPLS Networks)
NIC2 VLAN y - DMZ -> 1 Other HA OPN DMZ Firewall with 5 /24 networks (5 different DMZs)

Behind the perimeter OPN We have several networks.

The problem is that only connected vlan can surf on internet: all routed network, doesn't go outside, but from firewall i can ping everytihng.

any idea?

You need to set outbound NAT to hybrid or manual mode.
Then add an outbound nat rule on WAN interface with all source networks (create an alias for them first) that should be able to access the internet through your OPNsense.

And if course you need firewall rules on those interfaces to allow that traffic.
,,The S in IoT stands for Security!" :)