Home
Help
Search
Login
Register
OPNsense Forum
»
English Forums
»
24.1 Legacy Series
»
Problematic Proxmox simple SDN LAN towards OPNSense
« previous
next »
Print
Pages: [
1
]
Author
Topic: Problematic Proxmox simple SDN LAN towards OPNSense (Read 705 times)
mpccert
Newbie
Posts: 8
Karma: 0
Problematic Proxmox simple SDN LAN towards OPNSense
«
on:
July 25, 2024, 07:59:50 am »
Hi to all,
I'm currently, having issues with my OPNSense installation on Proxmox. I have VM and OPNSense installed in Proxmox. I used Proxmox SDN simple Lan config to connect to interconnect both the VM and OPNSense
VM<==Simple SDN LAN==>OPNsense(NAT)<===>PCIEbypass<==>Internet
The issue i'm facing right now is that, whenever the VM is restarted, it always loose its connection to the Internet. The Internet connection won't get back but have ping on the direct interface(gw) ip of OPNsense. I I need to restart the OPNSense Interface assigned for that SDN LAN. After restarting the Interface in OPNSense, internet connection will be back again. I already adjusted the MTU as well on the SDN interface but still no luck. Whenever a VM who use OPNSense as Internet GW, always looses its connection to the internet. I've already check the logs but no information can be found for the reason.
Hope someone can help, who experience the same thing.
OPNsense 24.1.10_2-amd64
FreeBSD 13.2-RELEASE-p11
OpenSSL 3.0.14
Proxmox-VE 8.2.2
Thank you,
Mike
«
Last Edit: July 25, 2024, 08:48:29 am by mpccert
»
Logged
suid0
Newbie
Posts: 1
Karma: 0
Re: Problematic Proxmox simple SDN LAN towards OPNSense
«
Reply #1 on:
August 12, 2024, 01:27:22 pm »
Not sure if this is the same, but your temp fix aligns with a behaviour I also experienced setting up a similar network being new to both OPNSense and Proxmox.
This is what I had done:
In Proxmox I had created a VNet within my Simple Zone, and within the VNet a Subnet to sit behind the OPNSense firewall.
eg.
Edit: Subnet -> General
Subnet: 10.0.0.0/24
Gateway: 10.0.0.1
SNAT: unchecked
DNS Zone Prefix: blank
No DHCP Ranges, I planned to let OPNSense take care of that.
In OPNSense, my LAN interface within the Simple SDN was statically set to: 10.0.0.1
When configured this way I experienced the same problem you describe and found that when I restarted the LAN interface on the OPNSense VM connectivity would return for the VM inside the subnet.
The thing I did to resolve it was edit the Subnet again in Proxmox and remove the Gateway.
Admittedly I haven't yet dug through the docs to confirm, but I suspect setting the Gateway to an IP on the subnet in proxmox creates a virtual router/dhcp server which was contesting the IP address.
I didn't think of it until after I'd resolved the problem but I should have used arp on the OPNSense VM and internal VM to confirm.
When the network is working after you restart the interface use both the OPNSense VM and internal VM to ping the LAN OPNSense IP (10.0.0.1 in my case), then do arp -a for both, they should display the same mac address for the IP.
Then when the network isn't working correctly, repeat test again and see if the internal VM now reports a different mac address for that LAN IP.
Logged
mpccert
Newbie
Posts: 8
Karma: 0
Re: Problematic Proxmox simple SDN LAN towards OPNSense
«
Reply #2 on:
August 12, 2024, 05:33:20 pm »
yes, the very same issue. I no longer use SDN LAN, I just use the Linux Bridging. I just create new Linux Bridge and member the VM and OPNSense GW interface on that.
VM<==Linux Bridge(VMBR)==>OPNsense(NAT)<===>PCIEbypass<==>Internet
Thanks,
Mike
Logged
Print
Pages: [
1
]
« previous
next »
OPNsense Forum
»
English Forums
»
24.1 Legacy Series
»
Problematic Proxmox simple SDN LAN towards OPNSense