OPNsense 25.1-BETA | feedback

Started by Seimus, December 19, 2024, 08:46:03 PM

Previous topic - Next topic
I then installed 25.1 on PVE with the same effect as described for my SG330: no gui logon possible.
After i disabled pf via console i was able to logon.

Well that's weird,

I deployed it on Proxmox as well, with a single NIC. Deployed it with a vlan from CLI static IP and GW set to production OPNsense without problem.

Regards,
S.
Networking is love. You may hate it, but in the end, you always come back to it.

OPNSense HW
APU2D2 - deceased
N5105 - i226-V | Patriot 2x8G 3200 DDR4 | L 790 512G - VM HA(SOON)
N100   - i226-V | Crucial 16G  4800 DDR5 | S 980 500G - PROD

Quote from: Seimus on December 20, 2024, 07:17:58 PMWell that's weird,

I deployed it on Proxmox as well, with a single NIC. Deployed it with a vlan from CLI static IP and GW set to production OPNsense without problem.

Regards,
S.

I also upgraded from 24.7 on cloned PVE. Expected mayhem but everything works surprisingly well. No major issues.

BUT I have a minor one - on mobile menu button is completely invisible (I guess it's white on white background), but it's there because when blindly tapping where it's supposed to be it works and highlights in dark grey :> Also - new, more white theme looks better IMO.

Quote from: pataps on December 20, 2024, 08:36:57 PMBUT I have a minor one - on mobile menu button is completely invisible (I guess it's white on white background), but it's there because when blindly tapping where it's supposed to be it works and highlights in dark grey :> Also - new, more white theme looks better IMO.

Can you tell me where, or screenshot with context?

Quote from: claus.schneeberger@gmail.com on December 20, 2024, 05:52:43 PMI have a Sophos SG330 for testing purposes.
OPNsense 24.7 was installed and running on that machine. I changed the firmware type to "Development" and installed 25.1. After the reboot was completed i was no longer able to access opnsense (web gui as well as ssh) but it did replay to ping.
After that i downloaded the 25.1 image and did a clean install. Same problem as before. So i installed 24.7 again, all fine.

I heard console settings were changed for some older systems like APU for (to me) unknown reasons, but I don't remember where I got that info from... some user somewhere.  I need a break ;)


Cheers,
Franco

December 20, 2024, 09:00:39 PM #20 Last Edit: December 20, 2024, 09:02:51 PM by staticznld
Having the same issue with the mobile view of the dashboard.

See attached screenshots.
1 menu invisible, 2 after some clicking around found the menu butten.

I looked a bit closer and found that the Default deny / state violation rule blocks traffic on both SG330 and PVE installation of 25.1

Out of the BOX, ssh will not be possible as is disabled. And Default rule on LAN allows Ingress only connection from the LAN network that is configured on the OPNsense. Saying this there is as well a Port forward rule that makes sure that in case you try to log into OPNsense via GUI, it will be possible even in this case.

So you should be able to at least LOG into the GUI.

Regards,
S.
Networking is love. You may hate it, but in the end, you always come back to it.

OPNSense HW
APU2D2 - deceased
N5105 - i226-V | Patriot 2x8G 3200 DDR4 | L 790 512G - VM HA(SOON)
N100   - i226-V | Crucial 16G  4800 DDR5 | S 980 500G - PROD

December 21, 2024, 01:57:09 PM #23 Last Edit: December 21, 2024, 01:59:03 PM by pataps
Quote from: franco on December 20, 2024, 08:42:17 PM
Quote from: pataps on December 20, 2024, 08:36:57 PMBUT I have a minor one - on mobile menu button is completely invisible (I guess it's white on white background), but it's there because when blindly tapping where it's supposed to be it works and highlights in dark grey :> Also - new, more white theme looks better IMO.

Can you tell me where, or screenshot with context?

Yeah, sorry here are the white theme screenshots showing same thing as @staticznld:

https://imgur.com/a/Z3AWJz6

Hi. I'm testing OPNsense 25.1.b_20. Installed from DVD over a previous 24.7.11 VM.

In my case I first exported the configuration and then imported it on the newly installed box during installation with a pendrive.
Everything was just fine without errors. The only thing I had to fix was reinstall the devel versions of the plugins I were testing.
VMWare tools plugin is working just fine. The other two, ndproxy and tailscale didn't work so I disabled them for now.
I've tested the snapshot feature and is really excellent. I have this feature from the hypervisor but I think that is much better to use it natively on ZFS.
I've tested to switch the active snapshot during boot and it works fine.

One thing I could ask is the option to generate a snapshot automatically before an update, if it is not already there.

Dark theme is fine for me. I know that it could take some time to get used to this kind of changes, but it doesn't differs too much from the cicada theme I'm using on my main box.

The certificate dashboard looks fine, I'll wait to test it with my main router.

Thanks to the OPNSense team for the great work and cheers....

Hi,

I build 24.7 for ARR64 for Nanopi R5S. I have up to 24.7.11 fine here. I use Rpi5 for that, and it runs 14.1.

I tried to build 25.1-BETA and it complaints about OS, that is not 14.2.

Do I need it to build? Am I asking in the right place?

thanks,

none
"We will call you Cygnus,
the God of balance you shall be."

December 26, 2024, 02:54:44 PM #26 Last Edit: December 26, 2024, 02:56:22 PM by claus.schneeberger@gmail.com
I did some more testing on 25.1b_20.
For testing purposes, without connecting the box directly to the internet via WAN interface, i always assign an IP address to the LAN interface as well as the IP address of the default gateway and DNS using console menu item 2). The WAN interface stays unconfigured.
I changed this procedure for my last test, skipping the configuration of the default gateway and voila OPNsense GUI was accessible. Then i added a default gateway for the LAN interface and immediately after applying the configuration the OPNsense GUI was no longer accessible (until i use pfctl -d and disable the gateway). I repeated this several times, always experiencing the same behaviour.

Quote from: claus.schneeberger@gmail.com on December 26, 2024, 02:54:44 PMI did some more testing on 25.1b_20.
For testing purposes, without connecting the box directly to the internet via WAN interface, i always assign an IP address to the LAN interface as well as the IP address of the default gateway and DNS using console menu item 2). The WAN interface stays unconfigured.
I changed this procedure for my last test, skipping the configuration of the default gateway and voila OPNsense GUI was accessible. Then i added a default gateway for the LAN interface and immediately after applying the configuration the OPNsense GUI was no longer accessible (until i use pfctl -d and disable the gateway). I repeated this several times, always experiencing the same behaviour.

Hi Claus,

I am new to the party here, but I don't get why having gateway to the LAN if. Is it not going to act as a router?

I may be missing something here, so sorry if I am not helping.

none
"We will call you Cygnus,
the God of balance you shall be."

Upgraded to the beta.  All is working here so far except for the missing menu button like others reported.  Still testing and will report issues if I find them.

Added an issue regarding dnsmasq in 25.1 here

Essentially, dnsmasq option"Query DNS servers sequentially" not working as expected.