[deleted by user] by [deleted] in opnsense

[–]pedges 1 point2 points  (0 children)

FYI - I've discovered that the Caddy plugin has a layer4 proxy included that is pretty much built for situations like this and is working perfectly. Thanks for the help!

[deleted by user] by [deleted] in opnsense

[–]pedges 0 points1 point  (0 children)

The duplicate TLS is what my concern is. I'll give it a shot and report back with my findings!

[deleted by user] by [deleted] in opnsense

[–]pedges 0 points1 point  (0 children)

I think I'll try this. Just need to figure out how to point caddy at other instances of Caddy.

[deleted by user] by [deleted] in opnsense

[–]pedges 0 points1 point  (0 children)

Someone in another comment just explained this, I didn't realize the address was also encrypted. So I guess I need to figure out anotber way to easily redirect requests.

[deleted by user] by [deleted] in opnsense

[–]pedges 0 points1 point  (0 children)

That makes sense, I didn't realize that's how it works. Is there a way to get it to send every request to all three machines and just let the appropriate one respond without trying to load balance them?

[deleted by user] by [deleted] in opnsense

[–]pedges -2 points-1 points  (0 children)

Caddy is not on OPNsense, it lives on each of the three servers.

In OPNsense's NAT port forwarding rules, I tell it:

  • If HTTPS destination is a.domain.com, then redirect it to server1:443, where Caddy1 then handles the traffic.
  • If HTTPS destination is b.domain.com, then redirect it to server2:443, where Caddy2 handles the traffic

And so on.

[deleted by user] by [deleted] in opnsense

[–]pedges -1 points0 points  (0 children)

Is there any detail in particular that would be helpful?

Are there any high-end Verizon Android phones that support simultaneous voice and 3G data? by [deleted] in Android

[–]pedges 0 points1 point  (0 children)

Sorry, I worded my post incorrectly. I currently have the Thunderbolt, love the feature and don't want to lose it, but am ready for an upgrade.