OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • English Forums »
  • General Discussion »
  • Confused
« previous next »
  • Print
Pages: [1]

Author Topic: Confused  (Read 284 times)

andrew0401

  • Newbie
  • *
  • Posts: 5
  • Karma: 0
    • View Profile
Confused
« on: September 20, 2023, 04:46:41 pm »
Looking to migrate from pfsense to opnsense - primarily for the mail filtering and other functionality - think I have a firewall setup problem but might be due to approaching it from a pfsense view of how to set things up?

Network

Have a simple (?) EE supplied router/modem and looking to insert opnsense between it and the local lan (very small 5 clients, couple of servers - email,, VPN...) to exactly replace pfsense.

Setup the VPN and and email filtering,, put another client onto the network between the modem and opnsesne  and it shows all ports closed - pfsense shows the relevant ports as open.  If I disable the firewall opnsense shows the open ports correctly - rules are basically copied from pfsense.

Suspect I have missed something bl..dy obvious or a key difference between pfsense and opnsense - any clues on where to start much appreciated.

Thanks
Logged

Maurice

  • Hero Member
  • *****
  • Posts: 918
  • Karma: 111
    • View Profile
    • GitHub
Re: Confused
« Reply #1 on: September 20, 2023, 09:12:26 pm »
Might be caused by default reply-to behaviour. Did you try testing from the Internet instead of the WAN subnet?

Cheers
Maurice
Logged
OPNsense virtual machine images
OPNsense aarch64 firmware repository

andrew0401

  • Newbie
  • *
  • Posts: 5
  • Karma: 0
    • View Profile
Re: Confused
« Reply #2 on: September 21, 2023, 10:44:39 am »
Tried from internet as well as wan subnet - no ports seem to be open on the WAN side - even tried with a pass everything rule and no luck

Am wondering if I have missed something in the change from pfsense to opnsense with regards to the rules - pfsense does not have all these default rules )why they include ipv6 when I have disabled ipv6??)
Modified the pass rule to log TCP/25 - it is being passed by the firewall but not received by postfix - postfix listening to all ips and responds correctly from the LAN interface.  So I have missed something linking WAN traffic to postfix?
Logged

andrew0401

  • Newbie
  • *
  • Posts: 5
  • Karma: 0
    • View Profile
Re: Confused
« Reply #3 on: September 21, 2023, 11:29:54 am »
If I turn the firewall off then the port on the WAN is visible and postfix responds  as expected- but I lose the other protection....

Must be something in the rules
Logged

andrew0401

  • Newbie
  • *
  • Posts: 5
  • Karma: 0
    • View Profile
Re: Confused
« Reply #4 on: September 21, 2023, 05:19:00 pm »
Totally confused.

Changed WAN from DHCP from the modem to a fixed IP - and it works perfectly.
Logged

  • Print
Pages: [1]
« previous next »
  • OPNsense Forum »
  • English Forums »
  • General Discussion »
  • Confused
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2023 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2