OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • Archive »
  • 16.1 Legacy Series »
  • [SOLVED] Upgrade repository problem and firewall understanding
« previous next »
  • Print
Pages: [1]

Author Topic: [SOLVED] Upgrade repository problem and firewall understanding  (Read 4165 times)

Ludovik

  • Newbie
  • *
  • Posts: 2
  • Karma: 0
    • View Profile
[SOLVED] Upgrade repository problem and firewall understanding
« on: July 26, 2016, 11:04:24 am »
Hi All and thanks for the great software.

1)
I installed from scratch "OPNsense-16.1.8".
Then I upgraded it from the Webgui to "OPNsense 16.1.20" and everything seems ok, but when I clicked again on "Click to check for updates" button it return repository error.
I tried to go under System-Settings-General and click save, but it didn't work.
To fix it, I had to manually change /usr/local/etc/pkg/repos/origin.conf "${ABI}/16.7/latest" to "${ABI}/16.1/latest" so maybe there's something wrong on the upgrade package.

2)
Then I have another question. I checked all documentation and forum, but I didn't find the answer.
I need to know how firewall works on OPNsense. Usually I work with input-forward-output schema, but I'm unable to find forward chain on OPNsense, so I don't know how to control forwarded traffic.

3)
I didn't find how to manage ESTABLISHED and RELATED connections, is there some more specific documentation will all these information?

Thanks a lot in advance.
Ludovik.
« Last Edit: July 27, 2016, 10:22:14 am by franco »
Logged

fabian

  • Hero Member
  • *****
  • Posts: 2768
  • Karma: 199
  • OPNsense Contributor (Language, VPN, Proxy, etc.)
    • View Profile
    • Personal Homepage
Re: Upgrade repository problem and firewall understanding
« Reply #1 on: July 26, 2016, 12:56:36 pm »
1) See https://forum.opnsense.org/index.php?topic=3399.0
2) There is no forward chain - pf rules can be invoked when a packet is received (IN) or sent (OUT) by an interface. Forward traffic hits the firewall twice: once it is received and once it is sent out to the next router / host. The GUI of OPNsense creates only rules for incoming traffic.
3)  https://www.openbsd.org/faq/pf/filter.html if you need additional information.
Logged

  • Print
Pages: [1]
« previous next »
  • OPNsense Forum »
  • Archive »
  • 16.1 Legacy Series »
  • [SOLVED] Upgrade repository problem and firewall understanding
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2023 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2