No video

Opnsense Firewall Installation - Virtual Lab Building Series: Ep2

  Рет қаралды 44,416

LS111 Cyber Security Education

LS111 Cyber Security Education

Күн бұрын

Hey all and welcome to my channel! This is episode 2 of the Cyber Security virtual lab building series where we look at how to install the Opnsense firewall in Virtualbox as well as some basic interface and IP address configurations.
By the end of this video you will have a fully functional lab firewall that you can access via its Web GUI and be ready for the next part of the series where we will install and configure some next generation firewall features.
Links used in video:
Opnsense - opnsense.org/
Bzip2 - gnuwin32.sourceforge.net/packa...
NOTE: I am not sponsored by or affiliated to any of the products or services mentioned in this video, all opinions are my own based on personal experiences.
DISCLAIMER: All information, techniques and tools showcased in these videos are for educational and ethical penetration testing purposes ONLY. NEVER attempt to use this information to gain unauthorized access to systems without the EXCPLICIT consent of its owners. This is a punishable offence by law in most countries.
#firewall #Cybersecurity #Education #InformationTechnology

Пікірлер: 151
@ls111cyberEd
@ls111cyberEd Жыл бұрын
For those of you finding yourself getting stuck with the virtual networking parts of this lab, I have created a supplementary video explaining how VirtualBox networking modes work, you can check it out here: kzfaq.info/get/bejne/fM6Uq85lx9Ouc6c.html
@marcnagel7997
@marcnagel7997 6 ай бұрын
I am a little bit lost at 19:35 You say that we set up a Virtual Switch earlier and therefore this IP comes in play.. Am i missing something? There was never a virtual switch configured
@percys8774
@percys8774 Жыл бұрын
Thanks so much, this looks exactly like the step by step guide for a virtual home lab I've been looking for. I'm trying to get started on the GSEC cert and appreciate you sharing your expertise.
@ls111cyberEd
@ls111cyberEd Жыл бұрын
Thanks for watching! All the best!
@ehizuelenabhulimen8433
@ehizuelenabhulimen8433 2 ай бұрын
The configuration of the Kali and virtual switch is a step that makes alot of people including myself stumble at this tutorial. No doubt more issues lie ahead. Thanks for the video.
@philipparker5291
@philipparker5291 2 ай бұрын
Indeed.
@Incanet66
@Incanet66 Ай бұрын
Agreed. I have this issue now. Should we set Kali to use both NAT and Internal Network? When I do this I get Connection Failed - Activation of Network connection failed. Ifconfig only shows eth0 and not eth1. If I only use NAT, Kali has internet access but cannot ping Opnsense. If I use only Internal Network, I get network connection errors and ifconfig only I get the same issues. So I guess I'm confused what Network settings I'm supposed to use for the Kali box so that it can ping and communicate with Opnsense.
@Incanet66
@Incanet66 Ай бұрын
I got Kali to work by putting it on the 10.255.255.x subnet and can ping the Opnsense box, but this only works for me when I put Adapter 1 on Internal Network. If I set Adapter 1 to Nat, then Adapter 2 to Internal Network Kali won't boot up. So do I need to have both or can I just use Adapter 1 on Internal Network?
@mohamedjouhari5505
@mohamedjouhari5505 Ай бұрын
@@Incanet66 did u still figure it out ??, because i'm also in the same problem
@nnekalyn4494
@nnekalyn4494 Жыл бұрын
This is awesome! I had a couple issues, but nothing a google search couldn't fix. Happy to subscribe. Great pace, too!
@boluwarinoladipo8509
@boluwarinoladipo8509 5 ай бұрын
Great video, Lyle Been really educational so far! For anyone struggling to enable a local and internet connection, you can create a NAT network with the same IP subnet used in the video and you can reach both the internet and the firewall on the same network.
@Don_Ron84
@Don_Ron84 Жыл бұрын
This was a tough install, there are several configurations that must be made not covered but he did put out a disclaimer that there is some assumed knowledge and skill. Great content I'm finally on esp 3 let's get it!!!
@MirajMusicUSA
@MirajMusicUSA 2 жыл бұрын
Great stuff man!
@nickstanovic
@nickstanovic 11 ай бұрын
I really like the idea of the series. The networking part of it really filters me out from viewing the rest of the videos though. I would assume the network is already going to be configured by a separate networking team and it would be up to the cybersecurity person to use tools to do the monitoring and analyzing or attacking and defending, rather than also setting up network on top of other responsibilities. The VM part was not tough though since someone in security would be doing that often. Anyways I'm happy for the people who understand and that will be able to enjoy the series
@scottjmagee
@scottjmagee 2 жыл бұрын
Excellent video, clear and easy to understand, I'm now subscribed and committed so please continue the good work!
@ls111cyberEd
@ls111cyberEd 2 жыл бұрын
Thanks Scott! Glad you found this useful and thanks for the sub.
@njp101
@njp101 Жыл бұрын
This is AWESOME!!
@naeem8434
@naeem8434 8 ай бұрын
Amazing video sir ❤
@osmaster3327
@osmaster3327 Жыл бұрын
thank you .Please keep it up!
@gadgetbro02
@gadgetbro02 2 жыл бұрын
Thank you so much. It's deadly helpful video. please make a video whole detail about OPNsense firewall module their intruduction and best configuration as per this firewall configuration.
@ls111cyberEd
@ls111cyberEd 2 жыл бұрын
Glad that you found this helpful! I have published a few videos after this one that cover various OPNsense firewall features such as IDS/IPS, Failover, Web Filtering/Proxy and Next-Generation firewall features using Zenarmor. If you haven't already, please do check those videos out. Thanks for watching!
@stellar369
@stellar369 5 ай бұрын
So, the kali linux and other VM's adapter will be internal network (intnet) so that they can connect with Opnsense. However, when I use ifconfig on my kali linux, it doesn't show the LAN interface of the firewall.
@melmayo1090
@melmayo1090 5 ай бұрын
Super video. Was looking for how to create a host eco system within vbox to practice pfsense. Thanks!
@ekhatorcourage1715
@ekhatorcourage1715 22 күн бұрын
The process was tough, had to do a lot of research then finally got it😀
@althaf6462
@althaf6462 11 сағат бұрын
I am stuck with Firmware not updating on Opnsense firewall. I do have internet connectivity on Kali linux, not sure what am I doing wrong. Any tips ?
@ls111cyberEd
@ls111cyberEd Жыл бұрын
Hey all, I have noticed that I get many comments from people running into issues when it comes to manually configuring the OPNSense LAN interface IP address at around 18:50 in the video. If you have issues with this, you can skip this setup and use the OPNSense default address which is 192.168.1.1 to access the OPNSense dashboard. When I created this video I automatically assume that everyone has some basic networking knowledge and is able to configure IP addresses and subnets to device interfaces, and understand concepts like gateway addresses, static IP's, subnetting, switching, DHCP and so on. If you are unsure of these concepts, there are loads of videos on KZfaq explaining this, then when you are ready, please do come back and view this video again as you will get more value out of it once the fundamentals of networking are fully understood. Take care! 😊
@MrSwatsteven
@MrSwatsteven Жыл бұрын
thats honestly a bit of a pretentious thing to say. knowing everything there is to know about networking isnt going to help navigate a buggy interface. and if you were wondering why people had issues with it is because when you edit the ip address it takes off track6 and you are just left with static.
@nsxtogo6044
@nsxtogo6044 Жыл бұрын
Awesome Video Series Thank you very much, but would you please recommned a video or a few of them (basic networking knowledge) about these concepts that are as close as possible to this video series. Thanks again for these great informative clear videos. 🙂
@user-qw1iu8kv2l
@user-qw1iu8kv2l Жыл бұрын
​I 2nd @@MrSwatsteven to some extent. Even if you "expect" people to know I find that when instructors assume anything about their audience they are doing them a disservice. The reason I am looking at this video is because I am a beginner and am trying to understand the context of these technologies. When you leave context out it makes it harder to follow along just gets frustrating.
@ls111cyberEd
@ls111cyberEd Жыл бұрын
Thanks for the comment, and I understand your frustrations especially being a beginner trying to break into a new industry. Lets put what I am trying to say in the above comment into another perspective. Lets say for instance you wanted to become a mechanic, you are going to need to learn the different parts that make up the engine, the tools that mechanics use to carry out their jobs, and the different techniques used to service engines and so on. No one is going to let you strip and rebuild their car engine if you don't know what a spark plug is or a piston, or a screwdriver vs a wrench. The very same applies in the IT industry and especially if you are you are trying to break into cyber security being a more advanced vertical within the IT industry, you HAVE to know the basics first before you can learn how to secure and find vulnerabilities in networks. I don't believe my original comment was pretentious in any way, I am simply offering guidance where I saw it was needed, with most of the issues seen related to misunderstanding of basic networking concepts, which I do assume to a certain extent people have, especially when it comes to configuring firewalls which is generally a more advanced topic. I always encourage open communication like this from my audience as it helps me to learn where I need to improve, and you will be pleased to know that I am currently working on a supplementary video to this series that explains things like how the networking works in VirtualBox which it seems most people are getting stuck on. Please understand I create these videos because I am trying to contribute to a industry that drastically needs more skilled people. I try my best to make these videos meaningful by parting with my knowledge at no charge to anyone, in my spare time. I wish you all the best with your ventures into cyber security, it will be challenging at times, but the hard work and persistence will pay off.
@user-qw1iu8kv2l
@user-qw1iu8kv2l Жыл бұрын
@@ls111cyberEd I appreciate your response and am glad that you care enough to respond. This is coming from someone who desperately wants to understand the tools and methodology and am only pointing out the shortcomings I see in the content. I appreciate you imparting your knowledge, but when doing so I would say as a teacher there are things that are more obvious to you than your student. And I hope that in your next series you take this into consideration. Thank you again for helping us with less understanding.
@missinglink2416
@missinglink2416 Жыл бұрын
awesome!!!!
@Felix-ve9hs
@Felix-ve9hs 2 жыл бұрын
2:20 in my experience, OPNsense will run just fine with 512MB of RAM and 4GB of disk space, but you might run into problems when upgrading to a newer version of when using ressource intense plugins.
@ls111cyberEd
@ls111cyberEd 2 жыл бұрын
Thanks for the comment! 100% agree with you. These videos were created to help people get some hands on experience with a firewall that have limited resources in a lab environment. In a production environment the hardware would need to be spec'd correctly based on the business requirements and in some cases a dedicated firewall appliance may be preferred.
@cod3sy
@cod3sy Жыл бұрын
Thank you!
@didarulislamrifat6423
@didarulislamrifat6423 Жыл бұрын
can you please show us the network configuration of Kali please
@luisnobregaband1086
@luisnobregaband1086 4 ай бұрын
Hi!! thanks for every video that you did. is very usefull!! i have a question. i install opnsense.. and kali linux. but when i checked on terminal on kali linux with ipconfig, i see another ip adrress.... is that because the ip that you used is just for your network? because i saw that the idea is use a static Ip right? thanks again. !
@shaunafagan3879
@shaunafagan3879 Жыл бұрын
Great video thanks so much! How did you set up the Kali network? I can't get it to work properly
@ls111cyberEd
@ls111cyberEd Жыл бұрын
Hi and Thanks for watching, please check out a more recent video that I did covering the different networking modes in VirtualBox here: kzfaq.info/get/bejne/fM6Uq85lx9Ouc6c.html Kali network configuration can simply be done using the settings GUI, look for the network option and your interface, and you can set up static ipv4 addresses and DHCP there. Hopefully this helps
@serdarcoban2287
@serdarcoban2287 Жыл бұрын
Hi - I was struggling with my Kali VM because I was not getting the IP address from OPNSense. It seems that OPNSense is not acting as DHCP server by default. I have enabled this in the options to assign IP to interface and that resolved the issue for me. I tried static as well but after restart the VM was acting weird. Thanks so far. I am excited to continue with this.
@AnonymousLifestyle1012
@AnonymousLifestyle1012 Жыл бұрын
Do not change the static settings for the network adapter in your LAN. In the network settings for your Kali machine, click adapter 2 and enable the internal network "intnet" and save the changes. This will make both networks visible on the kali machine.
@iamnyron
@iamnyron Жыл бұрын
@@AnonymousLifestyle1012 there both visable for me, but now my kali network does not work. And it only works for the internet for opnsense if i switch to that adapter in Kali linux. Any ideas ?
@tone396
@tone396 7 ай бұрын
i went back to do this lab... after the opnsense was set up I use the defalut IP for the firewall. when i tried to ping it in kali the machine it was unreachable. what should i do?
@Goodwin454
@Goodwin454 Жыл бұрын
its crazy how chatgpt does the whole stuff in one script , with a little errors but your idea of this project is perfect , thank you
@joshuawhite1424
@joshuawhite1424 Жыл бұрын
what script did you use
@nasyaramadhana6788
@nasyaramadhana6788 Жыл бұрын
sir. need video to setup virtual switch for home lab. thank you
@Gyorgy-jt8tj
@Gyorgy-jt8tj Жыл бұрын
Thanks for the serie of these videos. I'm preparing for a cyber security exam and need a lab for practicing. I really appreciate the effort you put into these videos. I have a problem with the video though. Kali cannot see the local network. The eth1 interface contains only inet6 and IPV6 entries. I enabled a second NIC in Kali as well and set it to internal network, but it didn't help. OpenSense is configured as shown in the video. What should be changed so that Kali can see the local network? Internet is accessible from Kali only the LAN is not to recognize.
@ls111cyberEd
@ls111cyberEd Жыл бұрын
Hi, thanks for watching. Try removing the second NIC from your Kali machine and make sure the first NIC is set to the internal network mode. Also, make sure that your OPNsense LAN interface is in the internal network mode, (intnet) by default. If you have DHCP enabled on OPNsense, the Kali machine will automatically get an IP address. If you don't have DHCP enabled, you need to assign a static IP address to your Kali machine on the same subnet as what you configured your OPNsense LAN interface on, then they will be able to communicate. If you need more info about how VirtualBox networking works, please check out this video: kzfaq.info/get/bejne/fM6Uq85lx9Ouc6c.html All the best with your exams.
@JF-zs6jm
@JF-zs6jm Жыл бұрын
Hello LS111, I just did ifconfig in Kali and there is no ip add for eth0
@joeblissett3862
@joeblissett3862 9 ай бұрын
Glad I came across with this channel, I'm learning a lot 😊 and this video is amazing, but here we go with my problem. I've set up a vm for opnsense with two networks, NAT and Internal Network, and a second Linux vm with just Internal Network: while I have Internet on opnsense, the Linux vm doesn't, where is the issue? Tia.
@shiyu9905
@shiyu9905 3 ай бұрын
because you dont have a NAT adapter on the kali vm, you need a NAT adapter for internet connection, best wishes
@itsnotreal579
@itsnotreal579 5 ай бұрын
When it's time for configuring UFS, I am only able to see (1GB) rather than seeing the second option as well which has 8GBs of RAM. Could you please help me with it?
@gackerman99
@gackerman99 Жыл бұрын
cheers mate
@ls111cyberEd
@ls111cyberEd Жыл бұрын
Thanks for watching!
@sergiojhdz
@sergiojhdz 8 ай бұрын
Is it cool if I document my learning and upload to github to show on my resume? I don't have work experience so I'd like to have something to show for
@JustinCampbell-qo1oz
@JustinCampbell-qo1oz Жыл бұрын
Great video! I got everything to work except the update part of the video. When searching for updates it says the network is unreachable. How can I fix this issue? Thanks for the help!
@ls111cyberEd
@ls111cyberEd Жыл бұрын
Hi Justin, thanks for watching. You can try starting off with some basic troubleshooting. Is the WAN interface up and does it have a IP address? If it does, from the OPNSense terminal are you able to ping anything on the internet? Does the device connected to your LAN interface have internet traffic? You can also check your DNS settings, confirm that when you ping a hostname that you are getting a reply. Hopefully this points you in the right direction.
@mubarak234
@mubarak234 2 жыл бұрын
I'm on getting two sets of ip addresses the firewall isn't coming up
@stellar369
@stellar369 5 ай бұрын
I can access the opnsense from the kali linux now but Internet is not working on kali linux and when I use ifconfig , there's only one adapter showing up. Just to confirm, do I have to enable two adapters on kali linux? I've only enabled one as Internal network. Anyone, please?
@philipparker5291
@philipparker5291 2 ай бұрын
You, sir, are Great. How can I check what my internal LAN IP configuration is (your example here is 10.200.200.254? Furthermore, somehow I am unable to configure kali linux so as to have two interfaces. I just installed it as a vm and it has one adapter (NAT). I see only one interface through ifconfig. Also, I do not understand what you mean with using the 'virtual NAT network' for the WAN interface (21:50). Do you mean changing the second adapter from an internal network to NAT in the Virtualbox Opnsense Firewall Network configuration? Even so, that did not help.
@user-hy6cc1uu5p
@user-hy6cc1uu5p 11 ай бұрын
what did you put as ip address for the nat network on VirtualBox? do you have video on the kali setup seems they don't talk to each other
@ls111cyberEd
@ls111cyberEd 11 ай бұрын
Thanks for watching, I set a static IP on my network on the 10.200.200.0/24 subnet as described between 17:00 - 20:00. It's your choice here how you would like to do this, you can leave DHCP enabled on OPNsense and it will automatically provide Kali with an IP or you can choose a static setup as I did.
@edgaracuna4914
@edgaracuna4914 7 ай бұрын
Excellent video, thank you for this wealth of information. Is there a discord or somewhere we can discuss this lab? Had a couple of hiccups following along, so I'm wondering if there's a place to discuss and help one another out?
@ls111cyberEd
@ls111cyberEd 7 ай бұрын
Thanks for watching! I don't have Discord running at the moment, however, it's something that I will consider in the future when the channel and community grows enough, so please do share and get more people involved.
@lillihrncir3000
@lillihrncir3000 Ай бұрын
@@ls111cyberEd I would definitely appreach a discord in the future!
@didarulislamrifat6423
@didarulislamrifat6423 Жыл бұрын
in my Kali there are no eth1 and when I add another network but its not working
@NimWin-ek2zy
@NimWin-ek2zy Ай бұрын
Hi, plz can you tell me how much resources we need to run this whole project?
@nikamirhaikal8364
@nikamirhaikal8364 Жыл бұрын
do you have a video about installing virtual switch , if you don't what would you recommend ?
@ls111cyberEd
@ls111cyberEd Жыл бұрын
I don't have a video about this, however, thanks for the suggestion.
@emeraldsoul6200
@emeraldsoul6200 2 жыл бұрын
Hello again, I would to ask how to setup the network in virtualbox of the virtual clients and virtual clients. I set up the Kali Linux with one internal network adapter. I remembered it worked somehow but not anymore.
@bbblader911
@bbblader911 Жыл бұрын
I finally was able to figure it out, just leave it dhcp dont try it static
@bbblader911
@bbblader911 Жыл бұрын
After i used that it worked for a while then stopped so i tried bridge for both with dhcp, Hopefully it doesnt mess up the lab
@reuvengelfarb1344
@reuvengelfarb1344 Жыл бұрын
What if I want to put the Machine hosting Virtualbox behind (protected by) the Opnsense firewall?
@ls111cyberEd
@ls111cyberEd Жыл бұрын
I guess you could try setting the VirtualBox interface for the firewall LAN facing interface to bridged mode and giving it a IP address on your LAN, then you would need to set the default gateway on your host machine to the IP of the firewall. I am speaking off the top of my head and I have not tested this, if it does not work just revert back to the old setup.
@medidarmawan5247
@medidarmawan5247 2 жыл бұрын
am very interested in opnsense, can you make a video about the IDPS opnsense system, in full. Thank You
@ls111cyberEd
@ls111cyberEd 2 жыл бұрын
Hi there, episode 3 of this series covers Suricata IDS/IPS features of Opnsense, link: kzfaq.info/get/bejne/irZ7f9hlxpmlZHk.html
@najeebbakht7952
@najeebbakht7952 Жыл бұрын
Hi thanks for this but you seem to be missing the video on how to set up the network in Kali, including the virtual switch. Please can you provide me resources on how to set up this virtual switch or explain as I am stuck here. Thanks.
@ls111cyberEd
@ls111cyberEd Жыл бұрын
Hi Najeeb, thanks for watching. Unfortunately there is no video detailing the network setup in Kali or the virtual switch as I assume when creating these videos that for someone to be exploring firewalls, which is an intermediate to advanced topic, that they already have an understanding of basic networking concepts like configuring IP addresses to device interfaces. In the case of this video, the virtual switch I mention does not require configuration itself, its a logical representation of a layer2 switch. At 10:47 onward, when I configure adapter 2 and join it to the internal network called "intnet" this would be the same as taking a physical cable, and plugging it into a port on a physical switch. The same applies for the Kali machine, when you setup the adapter you join it to the same internal network called "intnet" and it would be like physically plugging a cable into the same physical switch that the LAN interface of your OPNSense firewall is plugged into. Once both devices are connected to the switch, they can communicate provided that they are on the same subnet. So if you choose 192.168.1.254/24 for your OPNSense firewall, then in order for Kali to communicate with it, you will need to make sure that it uses an IP address between 192.168.1.1-192.168.1.253. Each device that you connect to the LAN network will need a unique IP address in that range. Hopefully this helps.
@everlastinggospel8392
@everlastinggospel8392 2 ай бұрын
@@ls111cyberEd That step you skipped has stumped me too. So what are the settings on the 2 adapter cards on Kali to work with the opnsense in this video?
@emeraldsoul6200
@emeraldsoul6200 2 жыл бұрын
Hello, what's the purpose of removing disk from virtual drive? I tried but it said Unable to eject from ...
@ls111cyberEd
@ls111cyberEd 2 жыл бұрын
Hello, the disk or ISO image in this case needs to be removed before the system reboots so that it can boot from the virtual hard disk and not from the ISO image again. Once you have installed OPNSense to the disk, there is no need to boot using the ISO. Hope this helps!
@njp101
@njp101 Жыл бұрын
I have connected by kali virtual machine to the internal network, but when I run ifconfig it only displays an ipv6 address and is not pinging my firewall. Did you set a static ip on the kali machine or what? how did you get the 10.200.200.x ip address on the kali machine?
@ls111cyberEd
@ls111cyberEd Жыл бұрын
Yes, correct, I disabled dhcp4 because I wanted to use static IPs on the LAN segment. I explained this in the video from about 18:50 onward. The choice is obviously yours here, you can leave dhcp4 enabled and your Kali machine will receive an IP automatically or you can assign a static address, as long as it's on the same subnet they will be able to communicate.
@jithendrareddytamma6565
@jithendrareddytamma6565 Жыл бұрын
great video but please make a video on how to configure network in kali and swith. please please
@ls111cyberEd
@ls111cyberEd Жыл бұрын
Hi, thanks for watching, please check out this video about VirtualBox networking, it explains the switch aspect of the lab: kzfaq.info/get/bejne/fM6Uq85lx9Ouc6c.html Kali network configuration can simply be done using the settings GUI, look for the network option and your interface, and you can setup static ipv4 addresses and DHCP there. Hopefully this helps
@JF-zs6jm
@JF-zs6jm Жыл бұрын
Thanks for the video. I have one problem, as I cannot see any ip address on the eth1 interface when I run the command ifconfig in Kali Linux.
@ls111cyberEd
@ls111cyberEd Жыл бұрын
Hi JF, thanks for watching. Please double check that the both Kali and the OPNSense LAN interfaces are connected to the internal network called "intnet" as per the video. OPNSense will then supply Kali with a IP via DHCP. If this does not work, check your interface assignments on OPNSense and confirm that you have not accidently swapped the WAN and LAN interfaces around. Hope this helps.
@JF-zs6jm
@JF-zs6jm Жыл бұрын
Hello LS111 and thank you for your response. I have checked my configuration and it is exactly like in the video and it still does not work. As you can see from 22:04 of the video, dhcp has been assigned to the WAN interface instead. In Kali, I have set adapter 2 under network to 'Intnet'. Once again thanks for your resonse.'
@iamnyron
@iamnyron Жыл бұрын
@@JF-zs6jm i setup adapter 2 in kali as the intnet, still not showing. any ideas ?
@salimbzu1
@salimbzu1 2 ай бұрын
kali linux IP=10.10.10.253/24, opnsense em0 IP=10.10.254/24, both on intnet adapter, unable to ping both devices. what could be the reason? also unable to get opnsense WAN ip using DHCP
@kennynagano2678
@kennynagano2678 Жыл бұрын
Where did you get the IP address for your LAN network? My internal network will have a DNS server, DB Server and Workstation. Is the IP address for one of these the LAN network IP?
@ls111cyberEd
@ls111cyberEd Жыл бұрын
Hi Kenny, thanks for watching, the 10.200.200.x/24 address range setup on my LAN/Internal network was my choice and you can choose whatever works for you. OPNSense will then use DHCP by default to provide IP's within that range to hosts on the LAN/Internal network segment which is fine for your workstations. For the servers described above, it will be best to assign static IP addresses within the same LAN/Internal range and exclude those from the DHCP IP pool.
@ishanpathak2301
@ishanpathak2301 3 ай бұрын
can anyone help i am not able to update my opnsense as it is showing no internet connection
@nirmalunagar
@nirmalunagar 26 күн бұрын
In my case, WAN not showing IP, only LAN got IP why is that?
@remmanemohamed7120
@remmanemohamed7120 11 ай бұрын
Great Video but how can the host or anyone from the outside(internet) communicate with the firewall or the vms bcz I couldn't plzzzzz help
@ls111cyberEd
@ls111cyberEd 11 ай бұрын
Thanks for watching! By default, the firewall will block all communication from the outside, however, for this lab you should not be attempting to connect to it via the WAN interface anyway. You need to set up a VM attached to the LAN network and ensure that your LAN devices are all on the same subnet e.g. 192.168.1.0/24 for them to be able to communicate. From about 16:20 in the video, we start talking about configuring the firewall interfaces with IP addresses, to keep things simple, leave DHCP enabled and the firewall will automatically provide IP addresses to machines on the LAN in the above-mentioned range, the firewall can be accessed with your browser on 192.168.1.1
@remmanemohamed7120
@remmanemohamed7120 11 ай бұрын
@@ls111cyberEd but the auto generated rules can't be changed . but what I do if the host needs to access a service on one the LAN vms . what to do to redirect the host to the vm service using the firewall ?. And another if u pleased. I tried the bridger adater on wan and the host can not ping the firewall wan ? is it also bcz of the default config knowing that I added a new pass rule to allow all and any on the wan int in the firewall settings through one my local vms
@shrutikasuri4541
@shrutikasuri4541 Жыл бұрын
my kali linux is getting an ipv6 address though i have used internal network in the n/w adapter. Tried but could not ping my opnsense from kali too.
@ls111cyberEd
@ls111cyberEd Жыл бұрын
Hi Shrutika, thanks for watching. In the video from 18:50 onward I covered how to manually assign an IP address to the OPNSense LAN interface, if you follow these steps, the network I used in my lab is 10.200.200.X/24. You need to make sure that your firewall LAN interface and your kali linux machine are both connected to the 10.200.200.X/24 network. Because I disabled DHCP on the LAN interface, you will need to manually assign an IP address to your kali linux machine and use whatever your firewall LAN IP address is for kali's gateway, in the case of the video this is 10.200.200.254/24, for this to work. Alternatively, skip this part of the video and use the default OPNSense settings and connect to your firewall on 192.168.1.1 to make it a bit easier. Hope this helps
@shrutikasuri4541
@shrutikasuri4541 Жыл бұрын
@@ls111cyberEd Thanks so much for the quick reply. I used static IP Address but as you shared I assigned the IP addresses manually on the kali machine and it worked!! Thanks again!
@j.b.595
@j.b.595 Жыл бұрын
I can ping the firewall but i can't access it in the browser. I tried: Different browser Different device Checked network configuration (on the same subnet) Opened the The console and ran pfctl -d
@shadrachwilson1211
@shadrachwilson1211 6 ай бұрын
Hello LS111, thank you for this video. I learnt a lot but I also encountered a problem inside the OpnSense GUI. I'm not able to update the firmware status. Here's the error message I get (Could not find the repository on the selected mirror) and because of that, (There are no available plugins. What do I do? cos I've checked the internet connection on the Kali Linux machine and its working perfectly.
@shadrachwilson1211
@shadrachwilson1211 6 ай бұрын
Update: I managed to figure it out. I restarted the OpnSense VM and also changed the repository mirror to (LeaseWeb HTTPS, San Francisco, US). Its working now.
@stellar369
@stellar369 5 ай бұрын
Can you please tell me if you configured two adapters on kali linux, one for internal network and one as NAT? @@shadrachwilson1211
@shiyu9905
@shiyu9905 3 ай бұрын
@@stellar369 yes thats how you do it, use one for intnet and one for NAT, if you have a problem with the intnet interface configure it manually, you can see in the video that he has to adapter activated
@struggle375
@struggle375 Жыл бұрын
I have spent hours trying to get this to work and my Kali VM cannot reach the GUI no matter how i configure it
@ls111cyberEd
@ls111cyberEd Жыл бұрын
Thanks for watching, please double check that both your Kali VM and your OPNSense LAN interface are connected to the same internal virtual network and that they both have IP addresses in the same subnet configured correctly, if you followed the video you will need to setup a static IP address on Kali, if you decided to leave DHCP enabled on the OPNSense firewall it will automatically provide your Kali VM with an IP address. Hopefully, this helps.
@baskaranranujan7234
@baskaranranujan7234 Жыл бұрын
How can i find the Virtual Switch ip address in order to set up opnsense static ip configuration?
@ls111cyberEd
@ls111cyberEd Жыл бұрын
Hi, thanks for watching! You need to make sure that the LAN interface is joined to the internal network (intnet), check the video at 10:40 onward. You can then watch from 16:00 onward, in the video I show you how to assign the static IP on Opnsense, hope this helps.
@baskaranranujan7234
@baskaranranujan7234 Жыл бұрын
@@ls111cyberEd OK noted with thanks I'll check. Thanks for your videos and and explanations
@user-jd3jg1gx6b
@user-jd3jg1gx6b 11 ай бұрын
Min 25:00 It appears "Could not find the repository on the selected mirror." and "dont show any plugins" . Please someone help
@ls111cyberEd
@ls111cyberEd 11 ай бұрын
Thanks for watching, you can try changing your mirror, go to system->firmware->settings and there is a dropdown box to select your mirror, try another location and see if this improves things for you.
@user-jd3jg1gx6b
@user-jd3jg1gx6b 11 ай бұрын
@@ls111cyberEd Thank you it works with the cloudflare mirror. Awesome video!
@mustafanoorzaiy4447
@mustafanoorzaiy4447 Жыл бұрын
I lose configuration on firewall after I restart. also there is no plugins to install. I need help with that. Thanks
@ls111cyberEd
@ls111cyberEd Жыл бұрын
Thanks for watching! It seems like you are running OPNsense in its live mode, meaning that you are running it from the installation media, and it lives in your computer's volatile memory (RAM). If you perform any configurations in live mode, they will be lost when you restart because RAM has no persistence and will be cleared on reboot. You need to be sure that you install OPNSense on your hard drive, then once done, remove the installation media to prevent yourself from booting back into live mode. Hopefully, this helps.
@mustafanoorzaiy4447
@mustafanoorzaiy4447 Жыл бұрын
@@ls111cyberEd Thanks for replying I fixed that but no plugins and no ip for Linux it looks no dhcp server distributed ip from opnsense do you have any idea? I already watched last video for vm networking changed even bridging but no ip from eth1 no ping no internet.
@iamnyron
@iamnyron Жыл бұрын
I setup the connection, but it did not pick it up in Kali Linux. So I added it to adapter 2 in Kali settings, but now it just spins with the network connection unless I change to the other ethernet adapter. Any ideas?
@Adminsb42
@Adminsb42 Жыл бұрын
I too had the same issue but once I turned on the dchp server that fixed the issue.
@iamnyron
@iamnyron Жыл бұрын
@@Adminsb42 turned it on where ?
@iamnyron
@iamnyron Жыл бұрын
@@Adminsb42 like on Kali? Or in the opnsense? If you got which steps you did that would be a life saver bro
@Adminsb42
@Adminsb42 Жыл бұрын
@@iamnyron on opnsense. So do everything like normal when setting up the interface ip address. Once you get to the part about dchp server hit y. Then enter the ip you want on that dchp server.
@iamnyron
@iamnyron Жыл бұрын
@@Adminsb42 my Lan & Wan are getting addresses via dhcp, but still no internet on kali. I even setup the adapter 2 to the internet network. I appreciate the help though
@ymenseus
@ymenseus Жыл бұрын
I tried to do the same thing you did 5 times or more and i still can't manage to ping that LAN IP, what could did wrong to not be able to ping it?
@ls111cyberEd
@ls111cyberEd Жыл бұрын
Hi Ymenseus, please confirm that the computer your are pinging your OPNSense LAN IP with is on the same network subnet as your OPNSense LAN interface, so like in the case of the video at 19:36, I manually configured my OPNSense firewall to use 10.200.200.254/24 and disabled DHCP server which otherwise would automatically give IP addresses to devices on the LAN. You need to make sure that you manually assign an IP Address to you kali machine on the 10.200.200.X/24 network and that you set your Kali machines gateway to 10.200.200.254 for this work. Alternatively, keep your DHCP server enabled on the firewall and it will automatically assign an IP address to your machine.
@ymenseus
@ymenseus Жыл бұрын
@@ls111cyberEd Thank you so much, I've gone to File, Preferences and found the list empty so i created a new NAT network and after that in my both kali and OPNsense machines I made them connect to NAT network instead of NAT and it finally worked
@ymenseus
@ymenseus Жыл бұрын
Another problem i encountered is that the list of plugins isn't showing up, is there any prior settings i need to make sure of? I already clicked update before and it didn't update anything
@deanmcbride571
@deanmcbride571 5 ай бұрын
For those that have configured all the network settings but still can't connect to the firewall's GUI via a browser; retry, using a private window instead.
@zehraismayilova8180
@zehraismayilova8180 11 ай бұрын
I could not update
@ls111cyberEd
@ls111cyberEd 11 ай бұрын
Thanks for watching, Please try some troubleshooting basics first, does your firewall have internet access? Is your DNS setup correctly? Try pinging 8.8.8.8 or www.google.com do you get replies or does it time out?
@user-qw1iu8kv2l
@user-qw1iu8kv2l Жыл бұрын
you mention your setting the wan name you say you use em0 " which you set up earlier" but I see no point where you set any interface name to em0.
@ls111cyberEd
@ls111cyberEd Жыл бұрын
At 10:00 onward, when we configure Adapter 1 in VirtualBox and attach it to a NAT network, this is essentially configuring em0. OPNSense is based on a Unix operating system called FreeBSD, in FreeBSD when we are referring to a network interface, you will see it named as em0, or em1 and so on, it names it like this based on the chipset used in the network card, so in this case, 'em' is for Intel based chipsets like VirtualBox emulates. If we were using RealTek network adapters they would be labeled re0 or re1. Hopefully this helps.
@capoierafan
@capoierafan Жыл бұрын
all i can say i owe you my life :) subscribed and it would be an honor to follow you
@ls111cyberEd
@ls111cyberEd Жыл бұрын
Thanks for watching!
@tone396
@tone396 Жыл бұрын
my new root password isnt working. i know i chaged it
@ls111cyberEd
@ls111cyberEd Жыл бұрын
Hi, thanks for watching. Double check that you unmounted the OPNSense installation .iso, possibly the VM is still booting off the .iso and not off the hard drive. If this is the case, the root password you set wont work. Hopefully this helps.
@alexeyiah89
@alexeyiah89 10 ай бұрын
What are the hardware requirement for the entire series?
@ls111cyberEd
@ls111cyberEd 10 ай бұрын
Thanks for watching, I would say around 16GB RAM and a CPU that supports virtualization, which most do anyway, however, keep in mind that you won't need to be running all these VMs at once, only the ones you are working on at the time, so you could get away with less.
@alexeyiah89
@alexeyiah89 10 ай бұрын
@@ls111cyberEd thanks for the response 👍🏽
@joeosint
@joeosint Жыл бұрын
I am getting stuck on the OPNSense install, looks like kernal panic errors: "Stopped at kbd_enter+0x37: movq $0,0x11f81be(%rip)". Been googling for a couple hours now, no luck.
@joeosint
@joeosint Жыл бұрын
Well, I just started making one change at a time in the settings of the Virtualbox configs and found it was due to only having 1 CPU assigned to the machine. When I bumped it to 2 CPUs it worked.
@ls111cyberEd
@ls111cyberEd Жыл бұрын
Glad that you got it working!
@joeosint
@joeosint Жыл бұрын
@@ls111cyberEd Unfortunately I ran into another issue. I got the Suricate rule created, imported and enabled, but it would not pick up the Nmap scan. Nothing shows up in the alerts. I spent a couple hours trying to figure it out but ended up moving on to the next video.
Suricata IDS/IPS Installation on Opnsense - Virtual Lab Building Series: Ep3
27:33
LS111 Cyber Security Education
Рет қаралды 35 М.
Установка и базовая конфигурация pfSense
28:47
Давыд Рыленков
Рет қаралды 20 М.
НРАВИТСЯ ЭТОТ ФОРМАТ??
00:37
МЯТНАЯ ФАНТА
Рет қаралды 8 МЛН
小蚂蚁被感动了!火影忍者 #佐助 #家庭
00:54
火影忍者一家
Рет қаралды 41 МЛН
MISS CIRCLE STUDENTS BULLY ME!
00:12
Andreas Eskander
Рет қаралды 21 МЛН
Cybersecurity Tip: Build A Basic Home Lab (3/3)
17:56
MyDFIR
Рет қаралды 16 М.
3 Project Ideas in Cybersecurity. Build Experience & Portfolio.
7:38
How SNMP Works - a quick guide
5:50
nagiosvideo
Рет қаралды 366 М.
Set up a Full Network using OPNsense (Part 2: OPNsense)
1:50:46
Home Network Guy
Рет қаралды 84 М.
OPNsense Firewall Installation and Setup Tutorial
17:05
Sheridan Computers
Рет қаралды 23 М.
Building the Ultimate Cybersecurity Lab - Episode 3
26:34
Gerard O'Brien
Рет қаралды 8 М.
НРАВИТСЯ ЭТОТ ФОРМАТ??
00:37
МЯТНАЯ ФАНТА
Рет қаралды 8 МЛН