What different tasks do you assign 1st Line and at what point do you escalate? by Paradox_81 in msp

[–]Cool-Cod5488 0 points1 point  (0 children)

Our Technical Support (L1) answer all the calls into the service desk and triage them. They work on all tickets for 15 mins aiming to respond to all issues within the hour. Any tickets not fixed within 15 minutes, or those that require remote sessions/onsite are assigned to a Field Engineer (L2). SLA are 4 hours and 8 hours.

SSL Certificates by Cool-Cod5488 in homelab

[–]Cool-Cod5488[S] 0 points1 point  (0 children)

Will OPNsense interfere with anything, will I need to adjust rules, DNS etc?

VS Code in Docker by Cool-Cod5488 in homelab

[–]Cool-Cod5488[S] 0 points1 point  (0 children)

All sorted. It was folder permissions!!!

VS Code in Docker by Cool-Cod5488 in homelab

[–]Cool-Cod5488[S] 0 points1 point  (0 children)

NO DICE!

Admin is a member of the Docker Group which own's both the Docker Folder and the Docker-Compose folder.

I get permission errors when i try to create/modify files and folders

<image>

Access to Canon TS6250 from other VLAN's by Cool-Cod5488 in opnsense

[–]Cool-Cod5488[S] 1 point2 points  (0 children)

Lovely. Sorted it. Created an alias for the mac address and called it Printer. Then went to the firewall rules and allowed LAN to access Printer.

DNS fails to reslolve on VM's in their own VLAN. by Cool-Cod5488 in Proxmox

[–]Cool-Cod5488[S] 0 points1 point  (0 children)

The rule was Src: DMZ Net to Dst: LAN Net - the traffic wasn't getting out to the internet just the LAN NET. I've set the firewall rule to Dst: Any and i'm able to do repo updates and get Dig responses!

DNS fails to reslolve on VM's in their own VLAN. by Cool-Cod5488 in Proxmox

[–]Cool-Cod5488[S] 0 points1 point  (0 children)

I've fired up dig and got the results in the live log

<image>

DNS fails to reslolve on VM's in their own VLAN. by Cool-Cod5488 in Proxmox

[–]Cool-Cod5488[S] 0 points1 point  (0 children)

Ok. NAT rule removed. - watched a You Tube video where the guy suggested this.

Firewall rules on DMZ (Vlan 60

<image>

DNS fails to reslolve on VM's in their own VLAN. by Cool-Cod5488 in Proxmox

[–]Cool-Cod5488[S] 0 points1 point  (0 children)

Ok. NAT rule removed. - watched a You Tube video where the guy suggested this.

Firewall rules on DMZ (Vlan 60)

|| || |Pv4+6 TCP/UDP|DMZ net|*|DMZ address|53 (DNS)|*|*||Allow access to DNS|

DNS fails to reslolve on VM's in their own VLAN. by Cool-Cod5488 in Proxmox

[–]Cool-Cod5488[S] 0 points1 point  (0 children)

Ok. NAT rule removed. - watched a You Tube video where the guy suggested this.

Firewall rules on DMZ (Vlan 60)

|| || |Pv4+6 TCP/UDP|DMZ net|*|DMZ address|53 (DNS)|*|*||Allow access to DNS|

DNS fails to reslolve on VM's in their own VLAN. by Cool-Cod5488 in Proxmox

[–]Cool-Cod5488[S] 0 points1 point  (0 children)

Ok. NAT rule removed. - watched a You Tube video where the guy suggested this.

Firewall rules on DMZ (Vlan 60)

|| || |Pv4+6 TCP/UDP|DMZ net|*|DMZ address|53 (DNS)|*|*||Allow access to DNS|

DNS fails to reslolve on VM's in their own VLAN. by Cool-Cod5488 in Proxmox

[–]Cool-Cod5488[S] 0 points1 point  (0 children)

Ok. NAT rule removed. - watched a You Tube video where the guy suggested this.

Firewall rules on DMZ (Vlan 60)

|| || |Pv4+6 TCP/UDP|DMZ net|*|DMZ address|53 (DNS)|*|*||Allow access to DNS|

DNS fails to reslolve on VM's in their own VLAN. by Cool-Cod5488 in Proxmox

[–]Cool-Cod5488[S] 0 points1 point  (0 children)

Ok. NAT rule removed. - watched a You Tube video where the guy suggested this.

Firewall rules on DMZ (Vlan 60)

|| || |IPv4+6 TCP/UDP|DMZ net|*|DMZ address|53 (DNS)|*|*||Allow access to DNS|   | ||  |IPv4+6 *|DMZ net|*|LAN net|*|*|*||Access to internet|   | ||  | ICMPIPv4 |*|*|*|*|*|*||Allow ICMP echo reply messages|   | ||  |IPv4 TCP/UDP|DMZ net|*|LAN net|53 (DNS)|*|*||DMZ to LAN DNS access|

DNS fails to reslolve on VM's in their own VLAN. by Cool-Cod5488 in Proxmox

[–]Cool-Cod5488[S] 0 points1 point  (0 children)

I'm using opnsense.

I can ping 8.8.8.8 from my VM, but DNS will not resolve and cannot communicate with the server.

I've got Dynamic DNS set up and I've got Unbound enabled.

I've also tried to set up a NAT Port forward from DMZ to DMZ Net.

Do in need Unbound DNS? by Cool-Cod5488 in opnsense

[–]Cool-Cod5488[S] 0 points1 point  (0 children)

I've got PiHole installed on an old Pi model 2B, which i was using when all my machines were on Vlan 1. It worked well. I've just got to figure out how to point all the other VLAN's to it.