- 23
- 45 736
jonomoss
South Africa
เข้าร่วมเมื่อ 17 ก.พ. 2017
How To Install GNS3 On Linux - Debian based
We will follow most of the steps in the official Installation guide on GNS3’s website, however during the installation and initial set up of GNS3. I ran into issues and errors, I will show you all the steps I went through to get GNS3 installed and running. We will then go over how to create an OpnSense and Ubuntu VM /Node.
You can find the write up and commands using the following link:
jono-moss.github.io/post/-gns3-install-debian-27-09-2024/
Chapters:
00:00 Installation
00:48 Dependency Error
00:44 Remove Dynamips from command
01:13 Dynamips Fix
02:47 GNS3 Initial Setup
03:17 libvirt Not Installed / virbr0 Missing Error
03:55 Fix libvirt Error
04:18 No VPCS Path Error
04:51 VPCS Version Mismatch Error
05:27 Fix VPCS Version Mismatch Error
07:10 Create an OpnSense Node
10:54 Create an Ubuntu Node
13:02 Get Internet Access on VM
You can find the write up and commands using the following link:
jono-moss.github.io/post/-gns3-install-debian-27-09-2024/
Chapters:
00:00 Installation
00:48 Dependency Error
00:44 Remove Dynamips from command
01:13 Dynamips Fix
02:47 GNS3 Initial Setup
03:17 libvirt Not Installed / virbr0 Missing Error
03:55 Fix libvirt Error
04:18 No VPCS Path Error
04:51 VPCS Version Mismatch Error
05:27 Fix VPCS Version Mismatch Error
07:10 Create an OpnSense Node
10:54 Create an Ubuntu Node
13:02 Get Internet Access on VM
มุมมอง: 863
วีดีโอ
IPSEC VPN - Connect Two Buildings Together and share a folder.
มุมมอง 1.2K5 หลายเดือนก่อน
In this Video, we go over how to connect two buildings networks together using IPSEC VPN on OpnSense. We then go through a quick example guiding you on how to share a folder (SMB) from a windows machine in buillding 2. To a Linux machine in building 1. 00:00 Network Overview 01:32 Create Key Pairs 05:09 Create Connections 09:15 Add Children 11:48 Firewall rules 17:26 Test Connection 19:25 SMB S...
The OpnSense Series: 12. Setup openDNS Service on OpnSense
มุมมอง 4535 หลายเดือนก่อน
In this video we go over how to setup the openDNS service on OpnSense. openDNS Certificate link: support.opendns.com/hc/en-us/articles/227987007-Guide-to-resolving-certificate-errors-when-visiting-a-Cisco-Umbrella-DNS-Block-Page
How to create a Windows, Linux and OpnSense node in EVE-NG
มุมมอง 1.2K5 หลายเดือนก่อน
In this guide, I go over how to create a Windows, Linux and OpnSense node in EVE-NG Full write up and commands can be found using the following link: jono-moss.github.io/post/eve-ng-create-win-lin-op-nodes-16-07-2024/
How To Install Eve-ng on Proxmox
มุมมอง 3.1K6 หลายเดือนก่อน
In this video, I quickly explain why I wanted to use an "emulated virtual environment" and then show you how to create and install Eve-ng on a virtual machine on Proxmox. Stock footage at the beginning of the. video: pixabay.com/users/cipnt-8130977/? pixabay.com/users/coverr-free-footage-1281706/? pixabay.com/users/alessandro89-817526/? www.pexels.com/video/close-up-of-a-cpu-7140928/ www.pexels...
The OpnSense Series: 11. Protect OpnSense with 2FA
มุมมอง 5397 หลายเดือนก่อน
In this video, I show you how to enable 2FA to protect your OpnSense.
How to Monitor Multiple WANs / Gateways From a Single Monitoring Application
มุมมอง 1398 หลายเดือนก่อน
In this video we will look at how to monitor multiple WAN connections with a single monitoring software. Full write up and docker-compose file here: jono-moss.github.io/post/multi-wan-uptime-monitoring/
The OpnSense Series: 10. IDS & IPS System.
มุมมอง 2.8K8 หลายเดือนก่อน
In this video I go over the basics of using the Intrusion Detection System (IDS) and Intrusion Prevention System (IPS) in OpnSense.
The OpnSense Series:9. WAN Modes and Usages.
มุมมอง 4359 หลายเดือนก่อน
In this video I go over the different WAN modes and show you how to set them up and how to use it.
The OpnSense Series: 8. A solution to NAT Outbound rules not generating.
มุมมอง 9979 หลายเดือนก่อน
In this quick video I go over a solution to fixing the issue of NAT Outbound rules no auto generating.
The OpnSense Series:7. Trunk and IOT NetworkSetup.
มุมมอง 4.3K9 หลายเดือนก่อน
In this video we will setup our trunk and IOT VLAN network. We will also go over a few Firewall rules / features. With this video and all the previous videos in the series, you will have the knowledge to create your own VLAN networks.
The OpnSense Series:6. Setup Surfshark OpenVPN Client
มุมมอง 1.9K10 หลายเดือนก่อน
In this video we will setup Surfshark OpenVPN client on OpnSense. For a full in depth Guide: jono-moss.github.io/post/surfshark-client-opnsense-22-03-2024/ The original old Surfshark guide and Certificate Data can be found at: support.surfshark.com/hc/en-us/articles/12434921071890-How-to-set-up-Surfshark-on-an-OPNsense-router Please note that the guide supplied by Surfshark is out dated, but th...
The OpnSense Series:5. DNS and Website / DNS Block List Setup
มุมมอง 8K10 หลายเดือนก่อน
In this video we will setup Unbound DNS on OpnSense and I will show you how to also block / filter DNS requests.
The OpnSense Series: 4. Finishing the Management Network
มุมมอง 1.1K11 หลายเดือนก่อน
In this video we will finish setting up the management network by moving our WIFI AP, Proxmox and iDRAC to the management network. Music By: TVARI pixabay.com/users/tvari-38302100/?
How to add a new hard drive to an existing RAID 0 Virtual Disk on a H700 RAID Controller
มุมมอง 47811 หลายเดือนก่อน
In this video I will show you how to add a new hard drive to an existing RAID 0 Virtual Disk on a H700 RAID Controller. For a more detailed guide: jono-moss.github.io/post/h700-raid-controller-how-to-expand-a-raid-0/ Music by Oleksii Kaplunskyi from Pixabay pixabay.com/users/lesfm-22579021/?
The OpnSene Series: 3. OpnSense Virtual Machine Installation on Proxmox
มุมมอง 1.2K11 หลายเดือนก่อน
The OpnSene Series: 3. OpnSense Virtual Machine Installation on Proxmox
The OpnSense Series: 2. Creating the WAN Networks
มุมมอง 2K11 หลายเดือนก่อน
The OpnSense Series: 2. Creating the WAN Networks
The OpnSense Series: 1. Home Lab Network Design
มุมมอง 8Kปีที่แล้ว
The OpnSense Series: 1. Home Lab Network Design
How To Install Dell OpenManage Server Administrator on Proxmox 8.1.3
มุมมอง 1.3Kปีที่แล้ว
How To Install Dell OpenManage Server Administrator on Proxmox 8.1.3
How To Make Your Dell R710 Quiet using Proxmox & IPMI
มุมมอง 2.3Kปีที่แล้ว
How To Make Your Dell R710 Quiet using Proxmox & IPMI
How To Add Drives To The Dell PERC H700 RAID Controller
มุมมอง 868ปีที่แล้ว
How To Add Drives To The Dell PERC H700 RAID Controller
Old Server, New Home Lab (Dell PowerEdge R710)
มุมมอง 882ปีที่แล้ว
Old Server, New Home Lab (Dell PowerEdge R710)
Worked perfectly on an R730xd 12-bay LFF in 2025. Changed from 9% to 22% as the lowest fan speed in the script which is perfectly quiet enough for where it's going. Thanks!
Thank you, enormous help. Adguard Home was just too unstable. Basically been having RNG on my DNS queries.
Thanks for this. It really helps me to update BIOS. But faced one issue. I was able to access iDRAC6 via browser before but after update I can browse but after entering username & password page reload again. No error. etc. Help on it please
Hi jonomoss, Where can i download your Home lab Network Design.drawio ? Want to follow your design projec4 and expand the design.
Really useful video and your series is amongst the very best I've seen covering OpnSense and general network configuration. Many thanks.
Thank you for your work!
I am new to EVE and been trying to add OPNsense. I have followed the EVE instructions for OPNsense, and videos including yours but for some reason it is still greyed out when trying to run it. I know I am doing it right because I have followed all available steps and the directory has the cdrom.iso and virtioa.qcow2 in the OPNsense directory. For testing purposes, pFsense appliance added fine. By any chance do you know on why it isn't working for me?
Hi, it will be greyed out for two main reasons, one being if it cannot find the "opnsense" folder or two if the ISO is not correct. so the first thing you will need to check is that you are naming your folder correctly. So it will be "opnsense" a "-" then the version number. So in this video it is "opnsense-24". Next is to make sure you download the "DVD" version of OpnSense from their website. Upload that into the "opnsense-24" folder and rename it to "cdrom.iso" From there it should pick it up and not be greyed out. Sometimes it can take a bit of time for EVE-NG to detect it, so restarting the EVE-NG service or the entire host it is installed on can help. If you are still struggling, you can reply to this comment with the "file path" you are using / saving the ISO to and a link to the OpnSense ISO you are using. From there I can try see if I can find what is causing you issues. I hope this helps
@@jonomoss I appreciate your guidance on this. I was able to follow your directions and able to install OPNsense. However, I am unable to establish any connectivity. I have switched the VTNET 0 & 1. I have set the VMWare as bridged and VT Editor VTNET 0 to the WIFI connection, but I am unable to get any connectivity and login to the OPNsense WebGUI.
brilliant stuff man, thank you
Thanks a lot.
I have a question about the dell poweredge r710
If I have multiple VLANs set up, do I have to set up the port forwarding firewall rules in the same fashion as "Management" but with their specific name? For example, IOT VLAN will use the IOT interface, IOT net, IOT address, etc?
Hi, yes you will have to do it for each VLAN network.
I have the error. Do you have an idea where the error comes from? Activating manual fan speeds! (1560 RPM)Unable to send RAW command (channel=0x0 netfn=0x30 lun=0x0 cmd=0x30 rsp=0xd4): Insufficient privilege level Unable to send RAW command (channel=0x0 netfn=0x30 lun=0x0 cmd=0x30 rsp=0xd4): Insufficient privilege level
Hi, you need to make sure the user you are running the script as has IPMI "Administrator" access. I have a written guide at jono-moss.github.io/post/dell-r710-how-to-quiet-the-fans/ Just double check that you have set the correct permissions for your user and that you have the correct user details set in the script. Hopefully that helps you.
Great 👍 thanks for the video
This is great. I will try this. Thanks!
Great tutorial, good content with clear explanations. Thank you.
Thank you for all the kind words and I'm glad you are enjoying the tutorials.
Thank you for tackling a part of OPNsense that is frequenlty overlooked. Very useful video.
I think the official documentation of OPNsense needs to be improved as well on this regard!
Another very useful video. Many thanks.
Your instructions are both clear and accurate, well done sir. You have a calm and steady voice which makes it easy to follow and understand what it is you are doing. I can't believe your videos are not more widely seen, especially as the instructions on Surfshark's own website do not work. Surely there are more people using OPNsense with Surfshark or other VPN providers? Anyway I like your style, please produce more. Thank you.
if I need to connect a mobile client is the configuration method the same? The client has a dynamic external IP
+1000 can you give a walkthrough how to setup road warrior (mobile user on Android via Internet, public variable IP) VPN client setup (on Opnsense side + on mobile client side
Hi there, I have a dell r720 working server with two raid 1 arrays, the first one for the windows server os and the second one is for storage. I am now becoming short on space, so i would need to add 1 or 2 new disks and create a new raid 0 or 1 array. The question is, can i do this without loosing data or braking my working server? if i do this from the menu showed on your video, will the boot normally into windows showing the new drive with a new letter? thank you in advance
Hi there, Okay so I would always recommend that you do a backup of all your data before you start as you can never know if something will go wrong. So make sure that you do this first. (Please note that this is a guide to help you in the right direction, I'm not responsible for any damages or losses. Please make sure you research thoroughly and feel comfortable before you start ) You can extend or add hard drives to existing arrays using via the RAID Controller Menu like in this video. However I would recommend that you rather use Dell EMC OpenManage Server Administrator (OMSA) to do it as it is easy to see what is happening via a GUI. I myself make mistakes when trying to use the RAID Controller Menu, so I always use OMSA for this. I made a video on how to do this via OMSA, you can have a look here and see if this is something you feel comfortable with: th-cam.com/video/Z-EJnSPeThA/w-d-xo.html To install OSMA on windows, here is a link to Dell's manuals: www.dell.com/support/kbdoc/en-za/000132087/support-for-dell-emc-openmanage-server-administrator-omsa You can download the windows version from here: www.dell.com/support/home/en-za/drivers/driversdetails?driverid=65c9y You can just check the "Compatible Systems" section on the above link to make sure your Dell is supported, if not you will just need to find the version that supports your machine. However the above link supports "PowerEdge R720". Notes and things to plan / think about: Expanding the arrays should not destroy any of your data, However. If you are expanding the "OS" array (the array windows is installed on), your server should boot into Windows just fine, but you might need to then use a program such as "GParted" to move the partitions around if you are going to then "Grow" the "OS" partition. I hope this makes sense. Other then that you should be good to go. Just a reminder to please back up your data and to research thoroughly before starting. There is plenty videos on TH-cam on expanding windows "OS" partitions. Hopefully this guides you to a solution.
Nice tutorial, thanks!
after a ton of problems, turns out: you cant connect from the same nic if youre using a shared nic (apparently?) you need login permissions on the user for a lot of things im sure i wouldve noticed the second part if i hadnt skimmed the video though 😭
Thanks for this tutorial, smooth !
Thanks for the video! I found this video extremely useful as a novice to networking/OPNSense. One question, do I need to create any firewall rules to allow DNS to the management address? Or does the NAT rule created for forwarding to the local dns handle that already?
Hi there, yip you will only need a firewall rule to allow DNS into the Management network. So you will have a rule that is something like the following: Protocol = IPv4 (TCP/UDP) Source = ALL or Management Net Source Port = ALL Destination = This Firewal Destination Port = 53 (DNS) So this will allow local DNS queries from the Management network in to the firewall. Then for non local DNS requests. Since the port forwarding is done internally, so forwarded to 127.0.0.1 ( “This Firewall”) no firewall rule is needed for that. I hope that make sense
@@jonomoss so in addition to the NAT/forwarding step shown in the video, I also need the firewall rule which you described?
If I use a custom link for the blocklist (URLs of Blacklists) instead of the predefined Type of DNSBL, will the cron you created for the automatic daily (Update Unbound DNSBLs) download will also pull the updates from the custom URLs of Blocklists link? Thanks
Hi, yes it should.
I wish I could give you more than one like
This is great content, thank you for explaining the life of the packet and the demo!
why you dont use policy tab to configure rules?
but what we can do if modern browsers using resolving dns over https
Great video!!
Mega Video the best OPNsense videos in TH-cam, just follow your video tips and easily create a Mega OPNsense firewall I hope you can make a video about (nginx and Kea Dhcp new) just keep going you are great
Very good video, thank you. Vry timely with myown projects and I appreciate it getting in to proxmox too!
Thank you, very informative, well organized, and still relevant for a r730
Works great for me with an R710 with H700 running Proxmox VE 8.1-2. Thank you so much! At 2:38 you say login with iDRAC user name and password, but i logged in to OMSA using my Proxmox ssh password for root?
Hi, Thank you. PAM users that have root permissions (be in the root group) can login by default. However If you want to change that / not give your PAM user access to it. You can see the following guide: www.dell.com/support/manuals/en-us/openmanage-server-administrator-v10.0.1/omsa_10.0.1_users_guide_pub/editing-server-administrator-user-privileges-on-linux-operating-systems?guid=guid-167f8744-21ed-4399-82aa-eabb7a706a23&lang=en-us I hope that helps you.
You win the award for the most complicated network ever!
Hi, Would this work iso work with a T710?
Hi, I'm not too sure if it will work for the T710, you could try it. It will only install updates if it finds supported hardware. So you won't hurt your server. However, I would rather suggest you check out the following video: th-cam.com/video/ki78B4A_XkI/w-d-xo.html Allen Sampsell goes through how to create a bootable ISO with all the updates for a specific server. That way you can get the exact updates you will need for your T710. I hope this helps.
@@jonomoss Thanks - That will be a big help
Hi, The update CD for the r710 will this work on the T710 ?
Hi, I'm not too sure if it will work for the T710, you could try it. It will only install updates if it finds supported hardware. So you won't hurt your server. However, I would rather suggest you check out the following video: th-cam.com/video/ki78B4A_XkI/w-d-xo.html Allen Sampsell goes through how to create a bootable ISO with all the updates for a specific server. That way you can get the exact updates you will need for your T710. I hope this helps.
what application are you using for your net diagram
Hi, I use draw.io. The offline version can be downloaded from: www.drawio.com/
Thanks for covering this topic and especially how to to recover from losing 2FA access. Lot's of videos show how to enable a configuration but not many show how to restore a configuration.
Thank you very much, I'm glad you found it helpful.
great video! followed all the steps. got it working. i hope you will create a video for opndns.
Thank you, I can look into doing that for you, I have a few planned videos I want to do. But I will definitely add OpnDNS. to the "todo" list
Thank you for sharing. Please continue making this OPNsense series. Can you make a video on OPNsense site to site IPsec VPN? And also recommend which site to site VPN to use and why, thank you very much....👍👍👍👍👍
Thank you, I will be making videos / guides on this very soon.
Hi, Nice tutorial, Tho i've got a weird-ish behavior, i can access the OMSA interface with my PAM user, but if i try to launch via CLI omreport -? it gives "Error! User has insufficient privileges to run command." Any Idea?
Hi, when using the CLI, the PAM user has to have root permissions (be in the root group). However If you want to change that / give your user access to it. You can see the following guide: www.dell.com/support/manuals/en-us/openmanage-server-administrator-v10.0.1/omsa_10.0.1_users_guide_pub/editing-server-administrator-user-privileges-on-linux-operating-systems?guid=guid-167f8744-21ed-4399-82aa-eabb7a706a23&lang=en-us I hope that helps you.
Aye! Thanks! Meanwhile I found a jankier solution by using docker directly on the machine. The problem was that the user I was using in Pam it's root
Thank you
I'm glad it helped.
Can you share how to obtain the certificate data? Does this method work for other VPNs like NordVPN?
Hi there, Yes this will work for any OpenVPN connection type, which NordVPN supports. You can follow their User guide here on how to get it to work on OpnSense: support.nordvpn.com/hc/en-us/articles/20397569418129-OPNsense-21-setup-with-NordVPN The above support article has the Certificate Data for NordVPN. If you want to know how to find the certificate data / where it comes from, You can get the Certificate Data from their OpenVPN Configuration files: nordvpn.com/ovpn/ So for example, You can download and open the Configuration file for the "ad1.nordvpn.com" file: downloads.nordcdn.com/configs/files/ovpn_legacy/servers/ad1.nordvpn.com.udp1194.ovpn Then if you open the ovpn file in a text editor, you will find the certificates Data under the <tls-auth> section if you look in the videos description box, I have a link there where to find SurfSharks Certificate Data. The link is: support.surfshark.com/hc/en-us/articles/12434921071890-How-to-set-up-Surfshark-on-an-OPNsense-router I hope this helps you.
@@jonomoss Thank you very much for the reply and those links. Will definitely go through those links and test it out...👍👍👍👍👍👍
Thank you
You're welcome, I'm glad it helped.
Can you make some beginner friendly best practice guides for ZenArmor? Like what we should initially be blocking besides all the toggle switches and what applications and protocols we should block? How to interpret some of the logs in there so we know what to do with some of that information? Its hard to find something clear and concise like your tutorial for that!
Hi there, Sorry I don't see myself doing a ZenArmor guide any time soon. I tried ZenArmor in the passed and was never a fan of it. PS I'm not saying ZenArmor is bad, each to their own, however I personally prefer using the mix of "IPS/IDS (Suricata)", "Unbound Block lists" and custom firewall rules. Doing it this way, in a sense has "taught" me a lot more and I feel that I have more control over my network. Where with ZenArmor, I never felt like I had "Control" over my network.
PS. just as an update. I do see that forum.allenscloud.com is not online anymore which is a shame. I have however uploaded the ISO to archive.org/details/r-710-bootable So hopefully that helps you.
Very nice tutorial, i have a question, in the second 352, the menu doesnt have Management, only wan, lan and loopback, im doing something wrong or the menu changed?
Hi there, Thank you so much for your kind words. Nope, you are not doing anything wrong. In the previous video of the series th-cam.com/video/dCRhCrokeSo/w-d-xo.html I created a new "management" network. If you don't want / need a "management" network, having just LAN, WAN and Loopback is correct.
@@jonomoss I just watched that video and I didn't see any instructions on setting up the "management" network (source) Do you have another video on that? Stuck at 6:18 as I can't select multiple interfaces. Looks like I'm adding an Alias but not sure as to what I'm adding to the alias. Just port 53 on WAN, LAN, Loop & VPN's?
Hi @davemck1936 Sorry my mistake, I have edited that comment, if you see this video from th-cam.com/video/dCRhCrokeSo/w-d-xo.html I renamed the default LAN network to "Management". If you are not worried about having a separate "Management" network, you will have a single "LAN" network. With regards to the "Portforwarding" section you are stuck on, If I understand your question correctly, you will only forward "Local" networks DNS, so for example if you have "WAN, LAN, VPN" networks, you will only use the "LAN" interface and "VPN" interface, that is if you want to also block websites / DNS on the VPN. You don't do it on the WAN. So you will then create two separate "Portforwarding" rules. One for "LAN" interface and one for "VPN" using port 53, you don't select multiple interfaces on one rule. I hope this make sense.
Exactly what I was looking for. You made my day 🤞
Nice, I'm glad it helped you.
@mandeepmails I saw you asked about getting the R70 update ISO, but for some odd reason I cant find that comment any more. I do see that forum.allenscloud.com is not online anymore which is a shame. I have however uploaded the ISO to archive.org/details/r-710-bootable So hopefully that helps you.
@@jonomossthanks Jon. Literally I tried a lot on my own but couldn’t reach anywhere. Yeah TH-cam was acting weird, I felt like I I’m on targeted to some canary release 😂rofl
confirming everything works great. for the first time i can feel peace with the fans controlled. you're a life saver. before finding this channel i saw people are ordering noctua fans, playing with wires, compaining about connectors and now i'm just laughing out loud that i didn't follow that route. i used ubuntu mate, my bios and everydriver is updated with your help. you're a star ⭐
Thank you very much for the kind words, and I am extremely happy that you got it all working in the end, 😂 I agree that it is definitely a better method then having to worry about buying Noctua fans and trying to get them to fit correctly.
Hi Jonathan, thanks for the video. I was trying to find a solution for my T630 and couldn't find something useful with Google at first. So, it really helped me. Your script worked for my T630, so I modified it to have different levels of fan speeds. Also I figured out that there is another unsupported workaround: disabling the default fan behavior. I've added all information to one Github page ( still private repo as I am ironing out some design issues of the readme ) so maybe more people can benefit of it. Btw. your link to the webpage seems to not be working anymore. Was your script reliable in the past months? I'm thinking about adding user reports to my written guide whether the script and commands seemed to be working for their specific models and configuration. I haven't tested yet my setup excessively, as I am still waiting for some drive caddy's.
Hi @coolricksanchez, that is awesome I'm glad it guided you. I'm very excited to see your final script, what you are doing is very cool and definitely will be a huge contribution to others. Yeah my script still works perfect for me. I have had no issues at all with it. It has honestly been a set and forget script. Thank you for the heads up about the link not working any more, I have updated it to the correct link now. I do appreciate that.