So far I've not had any issues with getting my gateway above my OPNsense (knock on wood), but coming from PSsense, it really didn't want to allow me to get to the gateway interface. I had to add a new rule to explicitly allow it, and after that, zero issues. You may try this solution, it may not be the perfect answer, but it may be an answer.
Exactly. So by default OPNsense doesn't have a firewall rules to allow outgoing traffic from LAN. You will have to create one yourself. E.g., (PASS out; From LAN network; To ANY destination).
Quote from: mellow65 on March 04, 2024, 05:10:39 pmSo far I've not had any issues with getting my gateway above my OPNsense (knock on wood), but coming from PSsense, it really didn't want to allow me to get to the gateway interface. I had to add a new rule to explicitly allow it, and after that, zero issues. You may try this solution, it may not be the perfect answer, but it may be an answer. Exactly. So by default OPNsense doesn't have a firewall rules to allow outgoing traffic from LAN. You will have to create one yourself. E.g., (PASS out; From LAN network; To ANY destination).
Hi,thank you for your answers. The LAN is already allowed to go out to the WAN.On the gateway I have nothing other than DHCP and port 443 is open from a LAN address, not from internet address.I have this route: 192.168.1.10 (PC on lan) -> 192.168.1.1 (opnsense) -> 192.168.2.2 (opnsense WAN ip) -> 192.168.2.1 (Gateway) -> InternetI can access to internet, no problem there. The problem is that if I stop before, (the gateway) I have no feedback.The UNBOUND service is enabled. Is there a setting that could prevent me from accessing the gateway interface or anything to do with unbound, only rule in fw?
Since the request from PC comes from OPNsense LAN IP (not gateways LAN) the device must allow access from non-LAN IPs. Some devices restrict access to their LAN IPs, maybe there is an option for that.
What is the model of your gateway?