Today I decided I would create some way of visualizing my unbound DNS requests/blocks on OPNsense. Adguard does a good job at this but I have issue with added third party repos and plugins, especially at the router level.

Anyway…since the last time I’ve dug into this OPNsense has built in Unbound DNS reporting (since 23.1) and it’s amazing! Arguably just as good as Pihole or Adguard. Graphs, lists of top blocked and allowed domains, query logs, quick buttons to block or whitelist next to each domain. I’m impressed.

Not sure if this is the right community, but just wanted to share if some of you weren’t aware of this option.

  • NightAuthor@lemmy.world
    link
    fedilink
    English
    arrow-up
    8
    ·
    11 months ago

    Ugh, I want to build an opnsense router but I can’t go spending unnecessarily until I find a job.

    Anyone hiring an IT admin and/or software engineer in the Portland area?

      • NightAuthor@lemmy.world
        link
        fedilink
        English
        arrow-up
        3
        ·
        11 months ago

        How do you deal with only 1 Ethernet port?

        Vlan to managed switch? USB Ethernet adapter?

        Also, is this powerful enough for a symmetrical 1gig connection?

        • krolden@lemmy.ml
          link
          fedilink
          English
          arrow-up
          3
          ·
          11 months ago

          Theres a NIC that uses the WiFi m.2 socket and mounts in th thin client option port.

          Ive been running it at full speed on symmetrical gigabit pppoe with opnsense for a while. Works great.

        • peregus@lemmy.world
          link
          fedilink
          English
          arrow-up
          3
          ·
          11 months ago

          I run it on a Fujitsu Futro S720 thin client (bought for 40€ on ebay) with a VLAN aware switch. I know the Futro is not available in the US, but there is an HP thin client similar to it.

    • ikidd@lemmy.world
      link
      fedilink
      English
      arrow-up
      1
      ·
      11 months ago

      If you have a Proxmox box with 2 NICs, it requires very little resources as a VM.

  • Lem453@lemmy.ca
    link
    fedilink
    English
    arrow-up
    6
    ·
    11 months ago

    I’ve been rocking an ali express mini PC since 2017, started with pfsense for a year and ditched it when the devs had multiple public tantrums. Opnsense ever since then. It’s been rock solid and super stable since. Super happy I went with it!

  • ikidd@lemmy.world
    link
    fedilink
    English
    arrow-up
    1
    ·
    11 months ago

    I think you can also export to graphana via Prometheus if you want to get fancy.

  • Decronym@lemmy.decronym.xyzB
    link
    fedilink
    English
    arrow-up
    1
    ·
    11 months ago

    Acronyms, initialisms, abbreviations, contractions, and other phrases which expand to something larger, that I’ve seen in this thread:

    Fewer Letters More Letters
    DNS Domain Name Service/System
    HA Home Assistant automation software
    ~ High Availability
    IP Internet Protocol

    [Thread #260 for this sub, first seen 2nd Nov 2023, 20:10] [FAQ] [Full list] [Contact] [Source code]