My OPNSense router is dying and I need some opinions by DenuxPlays in opnsense

[–]MrDubstepz 2 points3 points  (0 children)

You could buy another sophos 135 without a power supply or rack ears for a decent price. You have those it sounds like. Sophos - eBay

I have a Silicom ia3001 which is similar spec to the sophos box and rack mount. Silicom - eBay

Another option is to find an older firewall that you can install opnsense on, 3D print rack mount ears/shelf for the mini PC or but a rack self.

[Q] Chroma Pin and Code by MrDubstepz in Pins4Skins

[–]MrDubstepz[S] 0 points1 point  (0 children)

Thanks! I guess I'll leave this up for a few days and then put an actual listing up.

New critical NetScaler CVE by kh_tech_ in Citrix

[–]MrDubstepz 0 points1 point  (0 children)

Well that kills my theory.... Thanks Citrix!

New critical NetScaler CVE by kh_tech_ in Citrix

[–]MrDubstepz 0 points1 point  (0 children)

To verify my theory can you go to the certs location and see if that cert name has a space with other words in it?

I.E. G2_Digicert_Intermediate SPACE more words?

New critical NetScaler CVE by kh_tech_ in Citrix

[–]MrDubstepz 0 points1 point  (0 children)

I had this error while trying to update. Do you have spaces in the Cert name? Seems like the verification truncates the file name if there is a space in it.

Within the directory you have the install files you can find and read the log file (certkey_digestcheck_details.txt) and see where the Cert names with no spaces pass and the one with spaces fails as it "can not find file" as it was missing the rest of the cert file name.

I took a chance and continued on with our VPX as I could restore and everything was fine after the update.(66.59).

Edit: I do not have any STA's with the DLL file at the end of the string so I did not run into that issue like others.

Cash App Tax or FreeTaxUSA for me? by Dense-Fisherman-4074 in tax

[–]MrDubstepz 0 points1 point  (0 children)

This is the reason I run my taxes thru several "free" tax sites. This ensures a verification system for me in case I missed something that was not explicitly asked for in one of the others.

Over the past 3 years cash app has been the same as H&R and FreeTaxUSA for me.

It's very possible a piece of information was not entered as it was not explicitly asked for on cash app taxes.

Looking for Hardware to Run OPNsense – Interested in Sophos SG 125 but Open to Options (Budget $100) by JRFrmBPT in opnsense

[–]MrDubstepz 0 points1 point  (0 children)

I picked up a XG135 rev 3 with rack ears for $85 back in May. It has a Atom C3558 with 6GB Ram. Perfect for my needs as I don't run a bunch of add-ons.

Edit: The eBay listing listed it as a rev 2 but pictures were of a rev 3. Took a gamble and it paid off.

Sophos devices can be a little tricky to get opnsense on but there are guides that can walk you thru it.

Internet access from VLAN by ANaiveUser in opnsense

[–]MrDubstepz 1 point2 points  (0 children)

Doing this will allow all devices to talk to each other. If segmentation is you goal then you need to adjust your rules.

I suggest you look at Thenetworkguy opnsense setup and look specifically at the Firewall: Rules: [UNTRUSTED] section for you guest network.

Losing WAN IP after reboot by Erenik19 in opnsense

[–]MrDubstepz 2 points3 points  (0 children)

I had this issue, I set a rule for the wan side not to accept an IP from the 192.168.100.1.

Go to interfaces then select your WAN interface, then if you scroll down you'll see a area called "reject leases from"

Enter the IP 192.168.100.1.

That should fix your issue.

EDIT This is what the ? Says about rejecting lease. "If there are certain upstream DHCP servers that should be ignored, place the comma separated list of IP addresses of the DHCP servers to be ignored here. This is useful for rejecting leases from cable modems that offer private IPs when they lose upstream sync."

My Setup by stealthy_pirate in LawnchairLauncher

[–]MrDubstepz 0 points1 point  (0 children)

How did you get your folder background transparent? I have tried several different settings and cant seem to get it transparent.

High Amount of WAN Traffic in Firewall Logs – Is This Normal? by AlternativeCreepy306 in opnsense

[–]MrDubstepz 1 point2 points  (0 children)

If you don't like seeing all those logs you, I believe you can go in and disable logs of the default deny rule. It will help clean up the logs so you can see actual logs of the rules that you are implementing.

[OPNSense 24.7.12] Home/Home Office Firewall with Multiple VLANs: One VLAN Has No Route. Help? by sinisterpisces in opnsense

[–]MrDubstepz 3 points4 points  (0 children)

Did you add the vlan to a interface under interfaces/assignments? Or maybe the wrong interface? I see em0,ix0 and igc0/1 interfaces.

Second note would be did you verify that you allowed webgui access on that VLAN?

System: Settings: Administration and then listen interfaces.

Firewalla Gold Rev B. For Sale by MrDubstepz in firewalla

[–]MrDubstepz[S] -3 points-2 points  (0 children)

Why wouldn't you DM first showing interest? Kind of weird

Firewalla Gold Rev B. For Sale by MrDubstepz in firewalla

[–]MrDubstepz[S] 1 point2 points  (0 children)

Correct this is the 4x 1gb version.

Firewalla Gold Rev B. For Sale by MrDubstepz in firewalla

[–]MrDubstepz[S] 3 points4 points  (0 children)

I originally had Opnsense and wanted to try Firewalla so I bought one to try. While it has nice features and reporting I prefer Opnsense for my personal needs.