Opnsense 23.1 Install:1 - Activate mimugmail's community repository:SSH Opnsense: fetch -o /usr/local/etc/pkg/repos/mimugmail.conf https://www.routerperformance.net/mimugmail.conf2 - Install AdGuardHome from System --> Firmware --> Plugins3 - Opnsense - System - Settings -General DNS Servers: empty Untick: Do not use the local DNS service as a nameserver for this system Untick: Allow DNS server list to be overridden by DHCP/PPP on WAN4 - Services – DHCPv4 – [LAN] : DNS Servers all empty5 – Opnsense – Services - Unbound DNS – General Tick: Enable Unbound ( Listen Port: 5353 ) ….
thanks for the guide! for some reason when i Untick: Do not use the local DNS service as a nameserver for this system. If i'm on opnsense box shell, i can't resolve any dns. once i change resolv.conf from localhost to opnsense's 192.168.1.1 address then dns works.does anyone know why i can't use 127.0.0.1 but can use the actual ip of opnsense?
I am very happy that after following the Guide posted here i could able to setup AGH and Unbound successfully.I have Internet now and the page loading time is insane. i amreally liking it.But i have one problem, after setting AGH and Unbound as only Resolver i am not able to update the Package... once i click the update it keeps on waiing for the update... What is wrong with my Opnsense ? why cant i update my packages ? i also intend to install other Packages, but without updating how will i do it ? why only the firmware update function is not working but Internet is Working i am clueless, pls help me to solve this problem... Thanks
Yup, i actually Found Matt's website on how to do this : https://0x2142.com/how-to-set-up-adguard-on-opnsense/Very Bottom. Example how to add more networks is, Example Default with no additional networks :In there, you'll see a section like this:dns: bind_hosts: - 192.168.1.1And one with more :dns: bind_hosts: - 192.168.1.1 - 192.168.10.1 - 192.168.100.1
Opnsense 23.1 Install:1 - Activate mimugmail's community repository:SSH Opnsense: fetch -o /usr/local/etc/pkg/repos/mimugmail.conf https://www.routerperformance.net/mimugmail.conf2 - Install AdGuardHome from System --> Firmware --> Plugins3 - Opnsense - System - Settings -General DNS Servers: empty Untick: Do not use the local DNS service as a nameserver for this system Untick: Allow DNS server list to be overridden by DHCP/PPP on WAN4 - Services – DHCPv4 – [LAN] : DNS Servers all empty5 – Opnsense – Services - Unbound DNS – General Tick: Enable Unbound ( Listen Port: 5353 ) Tick: Enable DNSSEC Support Network Interfaces: All6 - Opnsense - Services - Unbound - Dns Over Tls Server IP: 1.1.1.1 Server Port: 853 Verify CN: cloudflare-dns.com7 - Activate and start AdGuardHome from Services --> AdGuardHome8 - Navigate to http://Opnsense ip:3000/ ( 192.168.1.1:3000 ) to complete the setup Adguard9 - Adguard Home - DNS Configuration - Upstream Servers: Add Opnsense ip:5353 ( 192.168.1.1:5353 ) Delete those that exist10 – Adguard Home – DNS Configuration – Bootstrap DNS servers Add Opnsense ip:5353 ( 192.168.1.1:5353 ) Delete those that exist 11 - Adguard Home - DNS Configuration - Private reverse DNS servers: 192.168.1.1:5353
Will do.I also find the documentation/video from the original source:https://www.max-it.de/adguard-dns-blocker-neues-opnsense-plugin/He is showing it in an other way. Going with an other port for AGH and leaving port from Unbound at 53.Then making a NAT Port Forward to (in this video) 5310.Why not choosing this way? Is there any downside?The advantage would be, that the Firewall itself does not need to go through AGH and other networks, which I don't want to can also be Unbound only.
Quote from: yeraycito on January 28, 2023, 01:35:39 amOpnsense 23.1 Install:1 - Activate mimugmail's community repository:SSH Opnsense: fetch -o /usr/local/etc/pkg/repos/mimugmail.conf https://www.routerperformance.net/mimugmail.conf2 - Install AdGuardHome from System --> Firmware --> Plugins3 - Opnsense - System - Settings -General DNS Servers: empty Untick: Do not use the local DNS service as a nameserver for this system Untick: Allow DNS server list to be overridden by DHCP/PPP on WAN4 - Services – DHCPv4 – [LAN] : DNS Servers all empty5 – Opnsense – Services - Unbound DNS – General Tick: Enable Unbound ( Listen Port: 5353 ) Tick: Enable DNSSEC Support Network Interfaces: All6 - Opnsense - Services - Unbound - Dns Over Tls Server IP: 1.1.1.1 Server Port: 853 Verify CN: cloudflare-dns.com7 - Activate and start AdGuardHome from Services --> AdGuardHome8 - Navigate to http://Opnsense ip:3000/ ( 192.168.1.1:3000 ) to complete the setup Adguard9 - Adguard Home - DNS Configuration - Upstream Servers: Add Opnsense ip:5353 ( 192.168.1.1:5353 ) Delete those that exist10 – Adguard Home – DNS Configuration – Bootstrap DNS servers Add Opnsense ip:5353 ( 192.168.1.1:5353 ) Delete those that exist 11 - Adguard Home - DNS Configuration - Private reverse DNS servers: 192.168.1.1:5353for some reason when I followed these steps, it seemingly brought down my WAN permanently...as in, it did not recover and I had to reverse everything, including Unbound to get the WAN UP again....anybody else?