OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • English Forums »
  • Web Proxy Filtering and Caching (Moderator: fabian) »
  • HAProxy and Authelia
« previous next »
  • Print
Pages: [1]

Author Topic: HAProxy and Authelia  (Read 1986 times)

tomdh76

  • Newbie
  • *
  • Posts: 5
  • Karma: 0
    • View Profile
HAProxy and Authelia
« on: February 05, 2023, 07:03:40 pm »
Thx to the excellent tutorial of @TheHellSite (https://forum.opnsense.org/index.php?topic=23339.225) I have HAproxy working.

I have one service I would like to be entered only through Authelia, to enable 2FA. I see a guide for pfsense (https://dkict.com/pfsense-haproxy-authelia/) but I cannot get it to work in OPNsense

I have the needed lua scripts in place but I cannot find a place to enter the needed configuration for the backend service like "acl remote_user_exist var(req.auth_response_header.remote_user) -m found"

Anyone has this kind of setup working and would like to help me
Logged

tadchilly

  • Newbie
  • *
  • Posts: 4
  • Karma: 0
    • View Profile
Re: HAProxy and Authelia
« Reply #1 on: May 26, 2023, 05:53:18 am »
Did you ever get this working? I'm having problems with this too.
Logged

ibrahim.djadir

  • Newbie
  • *
  • Posts: 4
  • Karma: 0
    • View Profile
Re: HAProxy and Authelia
« Reply #2 on: June 06, 2023, 03:17:00 pm »
Hi
I am trying to do the same config is there any guidance?
thank you
Logged

sorano

  • Full Member
  • ***
  • Posts: 150
  • Karma: 20
    • View Profile
Re: HAProxy and Authelia
« Reply #3 on: June 18, 2023, 04:41:08 pm »
This has been possible since 2020:
https://forum.opnsense.org/index.php?topic=19025.0

Regarding config I just "translated" the Authelia docu examples to "OPNsense style of rules/conditions" no other guides needed, just some trial and error/looking at the config to get the correct rules in place.
Logged
2x 23.7 VMs & CARP, 4x 2.1GHz, 8GB
Cisco L3 switch, ESXi, VDS, vmxnet3
DoT, Chrony, HAProxy + NAXSI, Suricata
VPN: IPSec, OpenVPN, Wireguard
MultiWAN: Fiber 500/500Mbit dual stack + 4G failover

--
Available for private support.
Did my answer help you? Feel free to click [applaud] to the left

  • Print
Pages: [1]
« previous next »
  • OPNsense Forum »
  • English Forums »
  • Web Proxy Filtering and Caching (Moderator: fabian) »
  • HAProxy and Authelia
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2023 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2