2
0
mirror of https://github.com/opnsense/docs synced 2024-11-18 21:28:29 +00:00
Commit Graph

621 Commits

Author SHA1 Message Date
Ad Schellevis
4b3e99efcd Access / Servers / LDAP - update page to match ui settings. closes https://github.com/opnsense/docs/issues/537 2024-02-03 08:34:44 +01:00
Franco Fichtner
6950921b56 install: fix image signature verification step
This changed for 24.1: the image signatures are for the uncompressed
images in order to verify the integrity before writing to a medium.

There have been cases of damaged uncompressed images so this way it
can be found and avoided.
2024-02-02 16:50:16 +01:00
Thore Goebel
cd9d88871c
Fix typo in link (#535) 2024-01-30 16:40:40 +01:00
Thore Goebel
472a1c6a4b
Update Spamhaus How-To (#533)
* Spamhaus How-To: update terms to match UI

* Mention DROPv6
2024-01-30 15:43:25 +01:00
Ad Schellevis
715a08ed2d web proxy: move to plugins (https://github.com/opnsense/core/issues/7030) 2024-01-29 20:48:58 +01:00
Ad Schellevis
2f28a48538 aliases / geoip - add note for BE 2024-01-29 17:44:50 +01:00
Stephan de Wit
b074c9b48e VPN: IPsec: small note about Radius usage in road warrior setups 2024-01-29 09:44:03 +01:00
Ad Schellevis
22e2a930db System: Gateways: Single: migrate to MVC - update docs. closes https://github.com/opnsense/core/issues/6377 2024-01-24 09:52:02 +01:00
Ad Schellevis
c5bed41355 development/configd - add documentation for new config imports introduced in a1b0dd8071 , closes https://github.com/opnsense/docs/issues/532 2024-01-23 16:42:44 +01:00
Ad Schellevis
a10e5962e6 icap- replace icar test string with the one available on our download mirror. closes https://github.com/opnsense/docs/issues/530 2024-01-09 08:39:45 +01:00
Ad Schellevis
858c9f5f79 Trust / OpenVPN - add OCSP/CRL documentation. closes https://github.com/opnsense/core/issues/7114 2024-01-06 14:45:38 +01:00
Andreas Dolp
ff3ea5b11a
Fix typo in documentation/manuals/how-tos/multiwan. (#529) 2024-01-04 07:01:29 +01:00
Ad Schellevis
c0240b55a0 Services / Kea DHCP - add basic documentation. closes https://github.com/opnsense/core/issues/6971 2023-12-28 21:38:44 +01:00
doktornotor
8ae0112402
ips.rst - fix spelling (#528) 2023-12-28 18:22:37 +01:00
Amy Nagle
24ba3cb158
Unbound: Update predefined blacklist sources (#527) 2023-12-28 10:04:49 +01:00
doktornotor
08b7784965
Remove duplicated words in dnscrypt-proxy.rst (#525) 2023-12-24 11:25:25 +01:00
scudelletti
910c9c3f96
Typo applcation => application (#524) 2023-12-18 16:22:07 +01:00
Ad Schellevis
0dd678d19f VPN: OpenVPN - add a tip for client specific overrides and subnet topology 2023-12-14 16:18:24 +01:00
Stephan
f01d95c6cf unbound: small warning about forwarding to system nameservers in multi-WAN setups 2023-12-11 09:11:18 +01:00
satrapes
64c73024ed
Add a ProtonVPN Road Warrior setup page (#521)
* Add ProtonVPN WireGuard page

---------

Co-authored-by: Dimitris Paraskevopoulos <dimitris.paraskevopoulos@u-blox.com>
2023-11-29 11:46:04 +01:00
Ad Schellevis
46d56a8e71 git-backup - remove "master" and add a tip about "branch" creation, might clarify https://github.com/opnsense/plugins/issues/3132 2023-11-21 15:00:50 +01:00
Ad Schellevis
0c57a39f65 System: Gateways: Group - add a note in the example about the "gateway" selection. closes https://github.com/opnsense/docs/pull/518 2023-11-15 17:48:11 +01:00
Ad Schellevis
60825064db stylefix 2023-11-09 15:54:54 +01:00
satrapes
07b8c50c59
Update terminology on Wireguard how-to pages (#517) 2023-11-09 14:55:40 +01:00
Ad Schellevis
eb0fdefcf9 ETPro-telemetry - add product information links 2023-11-09 09:56:33 +01:00
Ad Schellevis
7b27b51f1d VPN: IPsec - add DPD so we have aplace holder to mention the "enable" flag 2023-11-08 15:55:58 +01:00
Ad Schellevis
8a48dce6da System/Access/Servers - add compliance option and some cleanups. closes https://github.com/opnsense/docs/issues/514 2023-11-08 15:12:22 +01:00
Ad Schellevis
467f9585e0 Installation / ESXi - align network driver choice to VMware's compatibility guide. 2023-11-06 17:33:54 +01:00
Ad Schellevis
03b004d1b5 System: Gateways: Group - better explain groups and point to the requirement of addresses. closes https://github.com/opnsense/docs/issues/513 2023-11-05 11:43:40 +01:00
Ad Schellevis
bcb0368cc4 VPN / OpenVPN - some typos in sslvpn_instance_s2s.rst 2023-11-04 15:33:05 +01:00
Ad Schellevis
1798c1c868 VPN: WireGuard - add baseline documentation and move examples. closes https://github.com/opnsense/docs/issues/504 2023-10-31 17:33:11 +01:00
Monviech
7bfa32740c
Update ipsec-swanctl-rw-ikev2-eap-mschapv2.rst (#510)
Hint that IPv6 transport doesn't work with UDP Encapsulation
2023-10-31 13:27:29 +01:00
Ad Schellevis
dab8d004d9 VPN / IPsec / General context - explain constraints when using both tunnels and connections. closes https://github.com/opnsense/core/issues/6950 2023-10-23 20:02:44 +02:00
Ad Schellevis
1392c4e471 Setup/Updates - add some troubleshooting tips (most common causes for update issues). 2023-10-20 19:49:39 +02:00
Daniel Aleksandersen
2f1b56bc93 mdns-repeater only supports up to 5 interfaces
Upstream documentation:
fbe78e7ffd/mdns-repeater.c (L330)
2023-10-20 09:28:56 +02:00
Maurice Walker
d1043f1da6 DHCPv6: document downstream prefix delegation 2023-10-20 01:15:07 +02:00
Ad Schellevis
8086c52a2d fix minor compile issues 2023-10-16 10:15:21 +02:00
Ad Schellevis
8d8a939f83 System: Configuration: History - update documentation with new MVC implementation, closes https://github.com/opnsense/docs/issues/503 2023-10-16 09:56:08 +02:00
Ad Schellevis
51b9acd79f Interfaces: Neighbors - add initial documentation, closes https://github.com/opnsense/docs/issues/506 2023-10-15 15:29:19 +02:00
Monviech
54eef60c16
Wireguard - Reworked wireguard s2s completely & added MTU + MSS to wireguard client (#498)
* Update wireguard-client.rst - Add MTU and MSS hints

* Update wireguard-s2s.rst - Add MTU and MSS hints

* Update wireguard-s2s.rst - changed mss values

* Update wireguard-s2s.rst - Reworked How-To completely

* Update wireguard-client.rst - adjusted mss value

* Update wireguard-client.rst - Different mss values for IPv4 and IPv6

* Update wireguard-s2s.rst - Improved some aspects

* Update wireguard-client.rst - Improved some aspects

Normalization rules should have different MSS values for either IPv4, or IPv4+IPv6.

Changed the protocol back to any, since I'm unsure if selecting TCP only means IPv4 TCP, since there is also only IPv6 selectable.

* Update wireguard-s2s.rst

- Omitted Source Port in Firewall rules
- Added tip and note about dynamic WAN IP

* Update wireguard-s2s.rst - Terminology changes 23.7.6

- Changed Local to Instance
- Changed Endpoint to Peer
- Added information about CARP vhid tracking to mitigate HA problems.
- Added note about Keepalive for NATed sites.
2023-10-15 15:04:43 +02:00
Monviech
d16635ca9a
ipsec-swanctl-rw-ikev2-eap-mschapv2 (#501)
* created ipsec-swanctl-rw-ikev2-eap-mschapv2.rst

* Update vpnet.rst

Changed the position of Legacy and New > 23.1
Added how-tos/ipsec-swanctl-rw-ikev2-eap-mschapv2 to doctree in New > 23.1

* Update ipsec-swanctl-rw-ikev2-eap-mschapv2.rst

General structure of How-To added

* Update ipsec-swanctl-rw-ikev2-eap-mschapv2.rst

Populated Prerequisites

* Update ipsec-swanctl-rw-ikev2-eap-mschapv2.rst

* Update ipsec-swanctl-rw-ikev2-eap-mschapv2.rst

Populated IPsec connection settings for roadwarriors

* Update ipsec-swanctl-rw-ikev2-eap-mschapv2.rst

Fixed IP address formatting in pools

* Update ipsec-swanctl-rw-ikev2-eap-mschapv2.rst

* ipsec-swst Version completedanctl-rw-ikev2-eap-mschapv2.rst - Fir

* Update vpnet.rst - Switched Positions for client config

* Update ipsec-swanctl-rw-ikev2-eap-mschapv2.rst - Version 1.0

* Update ipsec-swanctl-rw-ikev2-eap-mschapv2.rst

- Added DNS configuration payload information to pools and clients https://github.com/opnsense/core/pull/6864
- Added hint that ncp client is not affiliated with Deciso B.V.

* Update ipsec-swanctl-rw-ikev2-eap-mschapv2.rst - Added Routing

hint for Windows RAS Client in Split Tunneling mode.
2023-10-15 15:02:27 +02:00
Monviech
3cc00bfdf5
Update nat_reflection.rst (#507)
* Update nat_reflection.rst

- Fixed typo (asynchronous should be asymmetrical traffic)
- Added note about "reply-to" in specific setups with VPN WAN

* Update nat_reflection.rst

- Fixed VTI NAT description, referenced the tunables to make it work
2023-10-15 14:59:46 +02:00
Stephan
7c208a30b5 unbound: update DNSBL sources list and explain wildcard lists 2023-10-03 09:49:44 +02:00
Ad Schellevis
4a79cb9aed Services: Intrusion Detection - make a note about emulated mode as this is often a more stable solution when there are traffic issues with network cards / drivers. 2023-10-03 09:18:50 +02:00
Ad Schellevis
9f1bee2aa0 VPN: IPsec - add some migration notes when moving from tunnels to connections. 2023-10-02 16:44:26 +02:00
Ad Schellevis
8d030c3596 minor compile issue in https://github.com/opnsense/docs/pull/489 2023-10-02 15:54:27 +02:00
Cedrik Pischem
e86e01f1db
How-To for Reflection and Hairpin NAT added (#489) 2023-10-02 15:37:01 +02:00
Ad Schellevis
f3b42ec79e System: Configuration: Backups - history setting moved as part of https://github.com/opnsense/core/issues/6828 2023-09-27 10:14:04 +02:00
Ad Schellevis
5aa468ceba Authentication - LDAP: add new "constraint groups" property implemented in d971257fd9 2023-09-27 09:08:44 +02:00
Alexander Münch
ded92025fc Fix: Typo in reverse_proxy.rst 2023-09-09 21:13:52 +02:00