<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet href="/atom.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom">
  <title>Posts tagged: opnsense</title>
  <id>https://waylonwalker.com/tags/opnsense/atom.xml</id>
  <updated>2024-12-03T17:37:52Z</updated>
  <subtitle>All posts with the tag &#34;opnsense&#34;</subtitle>
  <link href="https://waylonwalker.com/tags/opnsense/" rel="alternate" type="text/html"></link>
  <link href="https://waylonwalker.com/tags/opnsense/atom.xml" rel="self" type="application/atom+xml"></link>
  <author>
    <name>Waylon Walker</name>
  </author>
  <generator uri="https://github.com/WaylonWalker/markata-go">markata-go</generator>
  <entry>
    <title>💭 Using OPNsense with Tailscale · Tailscale Docs</title>
    <id>https://waylonwalker.com/thought-439/</id>
    <updated>2024-12-03T17:37:52Z</updated>
    <published>2024-12-03T17:37:52Z</published>
    <link href="https://waylonwalker.com/thought-439/" rel="alternate" type="text/html"></link>
    <summary type="text">!https://tailscale.com/kb/1097/install-opnsense</summary>
    <content type="html">&lt;div class=&#34;embed-card embed-card-external&#34;&gt;&#xA;  &lt;a href=&#34;https://tailscale.com/kb/1097/install-opnsense&#34; class=&#34;embed-card-link&#34; target=&#34;_blank&#34; rel=&#34;noopener noreferrer&#34;&gt;&#xA;    &lt;div class=&#34;embed-card-image&#34;&gt;&#xA;      &lt;img class=&#34;glightbox&#34; src=&#34;https://tailscale.com/files/images/og-image.png&#34; alt=&#34;Using OPNsense with Tailscale · Tailscale Docs — Set up a Tailscale VPN on OPNsense. Get secure communication across your devices without the need for complex configuration.&#34; loading=&#34;lazy&#34;/ data-glightbox=&#34;description: Using OPNsense with Tailscale · Tailscale Docs — Set up a Tailscale VPN on OPNsense. Get secure communication across your devices without the need for complex configuration.&#34;&gt;&#xA;    &lt;/div&gt;&#xA;    &lt;div class=&#34;embed-card-content&#34;&gt;&#xA;      &lt;div class=&#34;embed-card-title&#34;&gt;Using OPNsense with Tailscale · Tailscale Docs&lt;/div&gt;&#xA;      &lt;div class=&#34;embed-card-description&#34;&gt;Set up a Tailscale VPN on OPNsense. Get secure communication across your devices without the need for complex configuration. &lt;/div&gt;&#xA;      &lt;div class=&#34;embed-card-meta&#34;&gt;Tailscale · tailscale.com&lt;/div&gt;&#xA;    &lt;/div&gt;&#xA;  &lt;/a&gt;&#xA;&lt;/div&gt;&#xA;&lt;p&gt;On reboot of my opnsense router it did not tailscale up.  I’m not sure if a key expired or what happened.  The fix was to first enable ssh, then ssh in and run tailscale up.&lt;/p&gt;&#xA;&lt;h2 id=&#34;enable-ssh&#34;&gt;enable ssh &lt;a href=&#34;#enable-ssh&#34; class=&#34;heading-anchor&#34;&gt;#&lt;/a&gt;&lt;/h2&gt;&#xA;&lt;p&gt;In opnsense System &amp;gt; Settings &amp;gt; Administration &amp;gt; Secure Shell &amp;gt; Enable Secure Shell&lt;/p&gt;&#xA;&lt;h2 id=&#34;tailscale-up&#34;&gt;tailscale up &lt;a href=&#34;#tailscale-up&#34; class=&#34;heading-anchor&#34;&gt;#&lt;/a&gt;&lt;/h2&gt;&#xA;&lt;pre class=&#34;chroma&#34;&gt;&lt;code&gt;&lt;span class=&#34;line&#34;&gt;&lt;span class=&#34;cl&#34;&gt;ssh &amp;lt;opnsense ip&amp;gt;&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span class=&#34;line&#34;&gt;&lt;span class=&#34;cl&#34;&gt;&lt;span class=&#34;m&#34;&gt;8&lt;/span&gt; &lt;span class=&#34;c1&#34;&gt;# to select shell&lt;/span&gt;&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span class=&#34;line&#34;&gt;&lt;span class=&#34;cl&#34;&gt;tailscale up&#xA;&lt;/span&gt;&lt;/span&gt;&lt;/code&gt;&lt;/pre&gt;&lt;p&gt;Follow the link to log in.&lt;/p&gt;&#xA;&lt;h2 id=&#34;disable-ssh&#34;&gt;disable ssh &lt;a href=&#34;#disable-ssh&#34; class=&#34;heading-anchor&#34;&gt;#&lt;/a&gt;&lt;/h2&gt;&#xA;&lt;p&gt;now uncheck secure shell to lock down the opnsense machine.&lt;/p&gt;&#xA;&lt;p&gt;In opnsense System &amp;gt; Settings &amp;gt; Administration &amp;gt; Secure Shell &amp;gt; Enable Secure Shell&lt;/p&gt;&#xA;&lt;div class=&#34;admonition note&#34;&gt;&#xA;&lt;p class=&#34;admonition-title&#34;&gt;Note&lt;/p&gt;&#xA;&lt;p&gt;This post is a &lt;a href=&#34;/thoughts/&#34; class=&#34;wikilink&#34; data-title=&#34;Thoughts&#34; data-description=&#34;These are generally my thoughts on a web page or some sort of url, except a rare few don&amp;#39;t have a link. These are dual published off of my...&#34; data-date=&#34;2024-04-01&#34; data-preview=&#34;These are generally my thoughts on a web page or some sort of url, except a rare few don&amp;#39;t have a link. These are dual published off of my...&#34;&gt;thought&lt;/a&gt;. It’s a short note that I make&#xA;about someone else’s content online &lt;a href=&#34;/tags/thoughts/&#34; class=&#34;hashtag-tag&#34; data-tag=&#34;thoughts&#34; data-count=&#34;2&#34; data-reading-time=&#34;3&#34; data-reading-time-text=&#34;3 minutes&#34;&gt;#thoughts&lt;/a&gt;&lt;/p&gt;&#xA;&lt;/div&gt;&#xA;</content>
    <author>
      <name>Waylon Walker</name>
      <email>hello@waylonwalker.com</email>
      <uri>https://waylonwalker.com</uri>
    </author>
  </entry>
  <entry>
    <title>💭 How to Configure DNS over TLS (DoT) Using Unbound DNS in OPNsense</title>
    <id>https://waylonwalker.com/thought-303/</id>
    <updated>2024-06-09T15:40:11Z</updated>
    <published>2024-06-09T15:40:11Z</published>
    <link href="https://waylonwalker.com/thought-303/" rel="alternate" type="text/html"></link>
    <summary type="text">!https://homenetworkguy.com/how-to/configure-dns-over-tls-unbound-opnsense/</summary>
    <content type="html">&lt;div class=&#34;embed-card embed-card-external&#34;&gt;&#xA;  &lt;a href=&#34;https://homenetworkguy.com/how-to/configure-dns-over-tls-unbound-opnsense/&#34; class=&#34;embed-card-link&#34; target=&#34;_blank&#34; rel=&#34;noopener noreferrer&#34;&gt;&#xA;    &lt;div class=&#34;embed-card-image&#34;&gt;&#xA;      &lt;img class=&#34;glightbox&#34; src=&#34;https://homenetworkguy.com/images/how-to/configure-dns-over-tls-unbound-opnsense/padlock-428549_640.jpg&#34; alt=&#34;How to Configure DNS over TLS (DoT) Using Unbound DNS in OPNsense — Going beyond the basics of home networking&#34; loading=&#34;lazy&#34;/ data-glightbox=&#34;description: How to Configure DNS over TLS (DoT) Using Unbound DNS in OPNsense — Going beyond the basics of home networking&#34;&gt;&#xA;    &lt;/div&gt;&#xA;    &lt;div class=&#34;embed-card-content&#34;&gt;&#xA;      &lt;div class=&#34;embed-card-title&#34;&gt;How to Configure DNS over TLS (DoT) Using Unbound DNS in OPNsense&lt;/div&gt;&#xA;      &lt;div class=&#34;embed-card-description&#34;&gt;Going beyond the basics of home networking&lt;/div&gt;&#xA;      &lt;div class=&#34;embed-card-meta&#34;&gt;homenetworkguy.com&lt;/div&gt;&#xA;    &lt;/div&gt;&#xA;  &lt;/a&gt;&#xA;&lt;/div&gt;&#xA;&lt;p&gt;Setting up DNS overTLS in opnsense has made my dns just a bit more secure and reliable.  I recently had an outage of half the internet within my house.  This also hit some of my friends and not some.  It did not hit my mobile network.  What seems to have happened is a dns issue with my isp not resolving some domains.  This setup corrected my issue and I was back online more securely.&lt;/p&gt;&#xA;&lt;div class=&#34;admonition note&#34;&gt;&#xA;&lt;p class=&#34;admonition-title&#34;&gt;Note&lt;/p&gt;&#xA;&lt;p&gt;I did try to setup the family resolver and found it was blocking some sites I am ok with.  I decided to drop back to the vanilla resolver and let other services within opnsense control blocking where I can caontrol the whitelist myself.&lt;/p&gt;&#xA;&lt;/div&gt;&#xA;&lt;div class=&#34;admonition note&#34;&gt;&#xA;&lt;p class=&#34;admonition-title&#34;&gt;Note&lt;/p&gt;&#xA;&lt;p&gt;This post is a &lt;a href=&#34;/thoughts/&#34; class=&#34;wikilink&#34; data-title=&#34;Thoughts&#34; data-description=&#34;These are generally my thoughts on a web page or some sort of url, except a rare few don&amp;#39;t have a link. These are dual published off of my...&#34; data-date=&#34;2024-04-01&#34; data-preview=&#34;These are generally my thoughts on a web page or some sort of url, except a rare few don&amp;#39;t have a link. These are dual published off of my...&#34;&gt;thought&lt;/a&gt;. It’s a short note that I make&#xA;about someone else’s content online &lt;a href=&#34;/tags/thoughts/&#34; class=&#34;hashtag-tag&#34; data-tag=&#34;thoughts&#34; data-count=&#34;2&#34; data-reading-time=&#34;3&#34; data-reading-time-text=&#34;3 minutes&#34;&gt;#thoughts&lt;/a&gt;&lt;/p&gt;&#xA;&lt;/div&gt;&#xA;</content>
    <author>
      <name>Waylon Walker</name>
      <email>hello@waylonwalker.com</email>
      <uri>https://waylonwalker.com</uri>
    </author>
  </entry>
</feed>