Pls Help: I can access webgui on HTTP although only HTTPS is checked. in config

Started by glau, May 03, 2026, 11:49:03 PM

Previous topic - Next topic
Hello,
pls find hereafter a picture of my configuration. I try to connect to webgui on https, but I am always switched on http.
I do not understand why...
Thanks for your kind help.
Regards,
GL


Quote from: glau on May 03, 2026, 11:49:03 PMpls find hereafter a picture of my configuration. I try to connect to webgui on https, but I am always switched on http.
I do not understand why...
You are right, that should not be possible. If you access the GUI by HTTP you will be redirected to HTTPS automatically.
Have you pressed 'Save' at the bottom of the page?

Can you post a picture of the web browser URL when you access the GUI per HTTP, that includes the full URL when the GUI/login is shown?
And maybe try a `curl -o - http://<your OPNsense>/ ? That should not output anything normaly when HTTPS is active.
Deciso DEC740

Hello
thanks for your support. I am now in my job place, I can post the picture this evening.
Yes I saved and restarted the router as precaution before writing this post. The pictures have been taken after several restarts. I made several attemts to login with https and http, getting always the same behaviour as described below.
Basically what happens is that:
1) if I use https://router_ip then I get a message from the browser that the connection is not safe and, if I force to go on, I get in the address bar of the browser an https red with the "deleted" sign and then in the address bar appears http://router_ip with the router login page
2) if I type http://router_ip, I get the router login page
Thanks.
Regards,
GL

Quote from: patient0 on Today at 07:08:35 AM[...]If you access the GUI by HTTP you will be redirected to HTTPS automatically.[...]

On the same or a different port? With the redirect option "Disabilita la regola di reindirizzamento..." checked and port 443 specified I would expect port 80 to be unavailable. On my own system, "netstat -a" shows no HTTP port listening. HTTP to my HTTPS port gets no response. (I can't conveniently test port 80 because it's blocked by pf, but with no agent listening, I would expect a closed port response, as I have that enabled.)

hello,
are different ports...
This is what I cannot understand...
Ciao,
G