<?xml version="1.0" encoding="UTF-8"?>
<!-- generator="FeedCreator 1.8" -->
<?xml-stylesheet href="https://wiki.makeitsimple.be/lib/exe/css.php?s=feed" type="text/css"?>
<rdf:RDF
    xmlns="http://purl.org/rss/1.0/"
    xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"
    xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
    xmlns:dc="http://purl.org/dc/elements/1.1/">
    <channel rdf:about="https://wiki.makeitsimple.be/feed.php">
        <title>makeITsimple wiki - reseau:opnsense</title>
        <description></description>
        <link>https://wiki.makeitsimple.be/</link>
        <image rdf:resource="https://wiki.makeitsimple.be/lib/exe/fetch.php?media=wiki:logo.png" />
       <dc:date>2026-04-17T19:40:56+00:00</dc:date>
        <items>
            <rdf:Seq>
                <rdf:li rdf:resource="https://wiki.makeitsimple.be/doku.php?id=reseau:opnsense:firewall-guest&amp;rev=1624182006&amp;do=diff"/>
                <rdf:li rdf:resource="https://wiki.makeitsimple.be/doku.php?id=reseau:opnsense:gandilivedns&amp;rev=1687028023&amp;do=diff"/>
                <rdf:li rdf:resource="https://wiki.makeitsimple.be/doku.php?id=reseau:opnsense:ipv6-pppoe&amp;rev=1624182006&amp;do=diff"/>
                <rdf:li rdf:resource="https://wiki.makeitsimple.be/doku.php?id=reseau:opnsense:ldap&amp;rev=1696563332&amp;do=diff"/>
                <rdf:li rdf:resource="https://wiki.makeitsimple.be/doku.php?id=reseau:opnsense:letsencrypt&amp;rev=1624182006&amp;do=diff"/>
                <rdf:li rdf:resource="https://wiki.makeitsimple.be/doku.php?id=reseau:opnsense:loadbalancing&amp;rev=1624182006&amp;do=diff"/>
                <rdf:li rdf:resource="https://wiki.makeitsimple.be/doku.php?id=reseau:opnsense:openvpn-specific&amp;rev=1638016530&amp;do=diff"/>
                <rdf:li rdf:resource="https://wiki.makeitsimple.be/doku.php?id=reseau:opnsense:wireguard&amp;rev=1624182006&amp;do=diff"/>
            </rdf:Seq>
        </items>
    </channel>
    <image rdf:about="https://wiki.makeitsimple.be/lib/exe/fetch.php?media=wiki:logo.png">
        <title>makeITsimple wiki</title>
        <link>https://wiki.makeitsimple.be/</link>
        <url>https://wiki.makeitsimple.be/lib/exe/fetch.php?media=wiki:logo.png</url>
    </image>
    <item rdf:about="https://wiki.makeitsimple.be/doku.php?id=reseau:opnsense:firewall-guest&amp;rev=1624182006&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2021-06-20T09:40:06+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>firewall-guest</title>
        <link>https://wiki.makeitsimple.be/doku.php?id=reseau:opnsense:firewall-guest&amp;rev=1624182006&amp;do=diff</link>
        <description>OPNSense - Règles de firewall pour un réseau invité

Créer au préalable les interfaces et le serveur DHCP

Configuration des règles

	*  Dans Firewall -&gt; Aliases, nous allons d&#039;abord créer un alias AllIPV4localnet qui va identifier tous les réseaux locaux pour les bloquer facilement. Mettez-y :</description>
    </item>
    <item rdf:about="https://wiki.makeitsimple.be/doku.php?id=reseau:opnsense:gandilivedns&amp;rev=1687028023&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2023-06-17T18:53:43+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>gandilivedns</title>
        <link>https://wiki.makeitsimple.be/doku.php?id=reseau:opnsense:gandilivedns&amp;rev=1687028023&amp;do=diff</link>
        <description>Gandi LiveDNS Config

Password = API KEY



Mettre à jour manuellement via CURL


curl -X PUT https://api.gandi.net/v5/livedns/domains/DOMAIN.be/records/ARECORD-H &#039;authorization: Apikey APIKEYABCDEFGHIKJKJFKJF&#039; -H &#039;content-type: application/json&#039; -d &#039;{&quot;items&quot;:[{&quot;rrset_type&quot;:&quot;A&quot;,&quot;rrset_ttl&quot;:&quot;300&quot;,&quot;rrset_values&quot;:[&quot;1.2.3.4&quot;]}]}&#039;</description>
    </item>
    <item rdf:about="https://wiki.makeitsimple.be/doku.php?id=reseau:opnsense:ipv6-pppoe&amp;rev=1624182006&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2021-06-20T09:40:06+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>ipv6-pppoe</title>
        <link>https://wiki.makeitsimple.be/doku.php?id=reseau:opnsense:ipv6-pppoe&amp;rev=1624182006&amp;do=diff</link>
        <description>OPNSense &amp; IPV6 sur une connexion PPPoE

Configuration interface WAN

	*  Dans l&#039;interface WAN, choisir DHCPv6 
	*  Toujours dans le même écran, vous devez également configurer
			*  Request only an IPv6 prefix
			*  Prefix delegation (56) 
			*  Send IPv6 prefix hint</description>
    </item>
    <item rdf:about="https://wiki.makeitsimple.be/doku.php?id=reseau:opnsense:ldap&amp;rev=1696563332&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2023-10-06T03:35:32+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>ldap</title>
        <link>https://wiki.makeitsimple.be/doku.php?id=reseau:opnsense:ldap&amp;rev=1696563332&amp;do=diff</link>
        <description>OpenSense: LDAP

Important: mettre le CA avant et redémarrer Opnsense

Bind credentials est plutôt sous la forme DOMAINE\User</description>
    </item>
    <item rdf:about="https://wiki.makeitsimple.be/doku.php?id=reseau:opnsense:letsencrypt&amp;rev=1624182006&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2021-06-20T09:40:06+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>letsencrypt</title>
        <link>https://wiki.makeitsimple.be/doku.php?id=reseau:opnsense:letsencrypt&amp;rev=1624182006&amp;do=diff</link>
        <description>OPNSense &amp; Let&#039;s Encrypt

Installer le package

	*  Dans System -&gt; Firmware -&gt; Plugins, faire un Check for updates
	*  Installer le plugin OS-ACME-CLIENT 

Configuration

	*  Dans Services -&gt; Let&#039;s Encrypt -&gt; Settings
		*  Activer le service
		*  Choisir Auto Renewal</description>
    </item>
    <item rdf:about="https://wiki.makeitsimple.be/doku.php?id=reseau:opnsense:loadbalancing&amp;rev=1624182006&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2021-06-20T09:40:06+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>loadbalancing</title>
        <link>https://wiki.makeitsimple.be/doku.php?id=reseau:opnsense:loadbalancing&amp;rev=1624182006&amp;do=diff</link>
        <description>OPNSense: Loadbalancing multiwan

Configuration

	*  Dans Systeme -&gt; Passerelles -&gt; Single, définir les passerelles qui doivent être surveillées. Il faut configurer une adresse de monitoring   
	*  Dans Systeme -&gt; Passerelles -&gt; Groupes, configurer les passerelles et les priorités</description>
    </item>
    <item rdf:about="https://wiki.makeitsimple.be/doku.php?id=reseau:opnsense:openvpn-specific&amp;rev=1638016530&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2021-11-27T12:35:30+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>openvpn-specific</title>
        <link>https://wiki.makeitsimple.be/doku.php?id=reseau:opnsense:openvpn-specific&amp;rev=1638016530&amp;do=diff</link>
        <description>Opnsense - OpenVPN: Client Specific Overrides

Dans les paramètres du serveur VPN:
Topology doit être sélectionné

Ainsi que force CSO matching</description>
    </item>
    <item rdf:about="https://wiki.makeitsimple.be/doku.php?id=reseau:opnsense:wireguard&amp;rev=1624182006&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2021-06-20T09:40:06+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>wireguard</title>
        <link>https://wiki.makeitsimple.be/doku.php?id=reseau:opnsense:wireguard&amp;rev=1624182006&amp;do=diff</link>
        <description>OPNSense : Wireguard VPN

Côté OPNSENSE

Configuration du VPN

	*  Installer le package Wireguard via System -&gt; Firmware -&gt; Plugins 
	*  Faire F5 dans le navigateur pour faire apparaître le nouveau menu VPN Wireguard
	*  Dans VPN -&gt; Wireguard -&gt; Local appuyez sur le + pour créer une nouvelle entité</description>
    </item>
</rdf:RDF>
