IPAM

Started by vikozo, October 29, 2019, 10:27:10 AM

Previous topic - Next topic
Hello
would it be possible to add something like
https://www.phpipam.net/

to manage the IP Range and the device in the network?

have a nice day
vinc
apu2c4 / wle200nx / 240 Disk --> Firewall | FW-03
---
OPNsense 22.1.6-amd64
FreeBSD 13.0-STABLE
OpenSSL 1.1.1n 15 Mar 2022

Since it is a PHP software, it may run on OPNsense.

@fabian would be nice it talks together  too
on opnSense i define a Port with ip Range and DHCP Range, and this information would be be miracle - or code - in this tool ;-)
apu2c4 / wle200nx / 240 Disk --> Firewall | FW-03
---
OPNsense 22.1.6-amd64
FreeBSD 13.0-STABLE
OpenSSL 1.1.1n 15 Mar 2022

To be honest guys,

how many networks / IPs do you own? For a simple class C home network, you can use static ip mappings and use the description field and for larger networks, the firewall is the wrong place for ip management.

It is a firewall! Every additional service opens new chances of vulnerabilities.

I run phpipam on a dedicated vmware. Beyond webserver and php which is included in opnsense it needs a datebase and for the size of networks where you need an IPAM, it needs some power for subnet calculations and visualization.


Intel(R) Xeon(R) Silver 4116 CPU @ 2.10GHz (24 cores)
256 GB RAM, 300GB RAID1, 3x4 10G Chelsio T540-CO-SR

@hbc
thanks for your feedback, just a small question - how the connection is working phpimap - opnSense.
or you define a vlan on both place?
have a nice day
vinc
apu2c4 / wle200nx / 240 Disk --> Firewall | FW-03
---
OPNsense 22.1.6-amd64
FreeBSD 13.0-STABLE
OpenSSL 1.1.1n 15 Mar 2022

phpIPAM is for documentation. Without further automatization, you have to document your vlan in phpIPAM and create it on your network (switches and firewalls).

I added scripts for DHCP and DNS, so static dhcp entries can be exported to ISC DHCP and ISC BIND server.
Intel(R) Xeon(R) Silver 4116 CPU @ 2.10GHz (24 cores)
256 GB RAM, 300GB RAID1, 3x4 10G Chelsio T540-CO-SR

@hbc do you have an example because I need something like that to setup for my network

Sent from my moto g(7) using Tapatalk