Setup of Zen Armor in OPNsense

Comments

5 comments

  • Official comment
    Matt

    Hi Steve,

    As of OPNsense 23.7.4, you can run on lagg interfaces. That should just work fine. 

    Comment actions Permalink
  • stevefxp

    Matt,

    This is great news. Another quick setup question. My OPNsense firewall is operating like a router on a stick. Everything beow it is L2, but on different vlans. Should I run Zen Armor as L2 or L3 with Netmap?

    Thanks,

    Steve

    0
    Comment actions Permalink
  • Matt

    Hi Steve,

    I'd suggest protecting LAN side of bridge interfaces and use L3 netmap mode (emulated). 

    0
    Comment actions Permalink
  • stevefxp

    Ok that makes sense...

    Last question. I have disabled the hardware CRC, TSO, and LRO offloads. Do I need to disable VLAN hardware filtering?

    Thanks,

    Steve

    0
    Comment actions Permalink
  • Salih

    Hi Steve,

    Yes, you also need to disable it.

    0
    Comment actions Permalink

Please sign in to leave a comment.

Powered by Zendesk