Pfsense \ Opnsense new setup suggestions and help.

Assasin_Zer0

Senior Member
Joined
Jun 28, 2010
Messages
572
Reaction score
140
Location
The Void
Good Day All,

Hope someone here can help or point me in the right direction.
I'm looking at deploying pfsense\opnsense . and then squid Proxy

I currently have the following

Openserv\Afrihost Fiber - > Huawei ONT - > Ruijie (EG-210G-P) used to replace the ISP Router, PPPOE is done from here (DHCP, and Forced Proxy to intel nuc)
. - > Rujie (RAP2260(G) AP's X 2 Connected directly to the EG-210G - As this does the POE for the AP's also
. - > HP ProCurve 1800-24G (Used for all hard wired clients) - > Intel Nuc Single nic , running Pihole for DNS

I also have a Huawei WS5200 (Afrihost router) not in use.

I am not sure what the best way to approach this would be,
I have seen a few posts but I'm getting lost in translation.

The IntelNuc I can use\repurpose for the PFSense\Opnsense setup, it only has one NIC and this is what's complicating the setup, as you have to set up multiple Vlan's . (Clearly not my strong suite) and where i am getting lost.


The EG-210G has the ability to create Vlan's and so does the HP 1800

My internet comes from the Huawei plugged directly into the ruijie 210 WAN0 port, the ruijie 210 then does the PPPoE and ports 1 - 8 then has internet, The ruijie ports 1 & 2 supply both power and internet to the 2 X 2260 AP's and Port 6 is connected to the HP-1800 on it's port 1 to supply internet to hardwired devices, port 7 of the Ruijie is connected to the Intel NUC for DNS \ADblocking.

what I don't fully understand is the VLAN's bit and Tagging \ Untagging. what needs to be tagged where \ and what needs to be on what VLAN's


Hope someone can help.
 
What are the vlans for? Why do you need pfsense? It sounds like your network is working fine and you just want to add a web proxy, which you could maybe run on the NUC and redirect from the Ruijie. You have given a lot of detail, but somehow I missed what the vlans and pfsense are supposed to give you over what you have already.
 
Ideally you want to initiate PPPOE directly from xSense (as well as DHCP/DNS/etc) and have the WAP's on the LAN side to have the benefit of the proxy.

I suggest configure:
- 1 port on the HP switch as untagged/access (VLAN 1) = WAN <----- this is where you connect the cable from the ONT
- 1 port as trunk/tagged port (VLAN 0 + 1) <----- connect NUC to this port
- remaining ports should by default be VLAN 0 = LAN <----- all other LAN devices + uplink to the Ruijie (EG-210G-P)

On the NUC you will need to configure xSense, add VLAN nic on setup:
- configure re0.1 as VLAN tag 1 (this will be WAN port)
- configure re0 as LAN

The Ruijie (EG-210G-P) would then only be used for POE for the WAPS (disable DHCP!)

This should get you started ;-)
 
Last edited:
What are the vlans for? Why do you need pfsense? It sounds like your network is working fine and you just want to add a web proxy, which you could maybe run on the NUC and redirect from the Ruijie. You have given a lot of detail, but somehow I missed what the vlans and pfsense are supposed to give you over what you have already.
So from what I understand, you need two vlan's because the nuc only has one NIC .
 
Ideally you want to initiate PPPOE directly from xSense (as well as DHCP/DNS/etc) and have the WAP's on the LAN side to have the benefit of the proxy.

I suggest configure:
- 1 port on the HP switch as untagged/access (VLAN 1) = WAN
- 1 port as trunk/tagged port (VLAN 0 + 1)
- remaining ports should by default be VLAN 0 = LAN

On the NUC you will need to configure xSense, add VLAN nic on setup:
- configure re0.1 as VLAN tag 1 (this will be WAN port)
- configure re0 as LAN

The Ruijie (EG-210G-P) would then only be used for POE for the WAPS.

This should get you started ;-)
HAHAHA and this is where i go dom ..

When you say have the WAP's on the lan , i think i'm not understanding ,
you mean connecting the WAP's directly to the HP ?
If so , I dont have POE "Bricks"
The WAP's are powered by the Ruijie ,

So the HP looks like this ,
1643182067262.png

1643182093487.png

1643182113242.png
 
What are the vlans for? Why do you need pfsense? It sounds like your network is working fine and you just want to add a web proxy, which you could maybe run on the NUC and redirect from the Ruijie. You have given a lot of detail, but somehow I missed what the vlans and pfsense are supposed to give you over what you have already.
Sorry missed the other question,
Yes, everything is running ok, I just want to add a Transparent web Proxy for caching
 
Take it I'm kinda stuffed then unless I can get something with 2 NIC's. that can sit between the ONT and the rest of my network .
 
Take it I'm kinda stuffed then unless I can get something with 2 NIC's. that can sit between the ONT and the rest of my network .
Not at all you just redirect the desired traffic from the router / Ruijie to the NUC running squid. You already doing this for DNS
 
Top
Sign up to the MyBroadband newsletter
X