Post AzpmD5Mq8ZegCuu34y by jae@darkdork.dev
 (DIR) More posts by jae@darkdork.dev
 (DIR) Post #Azpm3LAYX0wWJuVi4m by subnetspider@mastodon.bsd.cafe
       2025-11-02T11:48:24Z
       
       0 likes, 0 repeats
       
       Don't know if I will regret this, but I've taken the first step in migrating my home network from Sophos Firewall to OPNsense, by creating a 2nd UniFi controller for the WiFi at my parents house. This lets me tear down my network, without their WiFi going down. Currently, if the site-to-site VPN goes down for too long, the UniFi APs will stop working after a while (searching for a new controller?).
       
 (DIR) Post #AzpmD5Mq8ZegCuu34y by jae@darkdork.dev
       2025-11-02T11:51:24.524436Z
       
       0 likes, 0 repeats
       
       @subnetspider i ran opnsense for 5 years on a 6port protecli and it was great. a storm killed the protectli and i had a unifi controller lying around so went with that. hope to refocus soon and build another system. if you need a hand reach out
       
 (DIR) Post #AzpmtNVL5uOscZ2rLs by subnetspider@mastodon.bsd.cafe
       2025-11-02T11:58:23Z
       
       0 likes, 0 repeats
       
       @jae Thanks for the offer, but I know how to handle OPNsense - I ran it for 6 years myself (2017–2023) and I'm quite familiar with it. 😁 I will probably run two OPNsense Firewalls in a HA configuration, which I've last tested a couple months ago.
       
 (DIR) Post #AzpmzQbKUh0hxjjRFg by jae@darkdork.dev
       2025-11-02T12:00:08.923217Z
       
       0 likes, 0 repeats
       
       @subnetspider that's fair. and glad to see someone run it for so long.  ive never done an ha setup. do you have a writeup on the experiment? this would be fun to read.
       
 (DIR) Post #Azpnu71NxnoHk8wrjM by subnetspider@mastodon.bsd.cafe
       2025-11-02T12:03:35Z
       
       0 likes, 0 repeats
       
       @jae Not yet, but I could do that if there is enough interest. Most of what I'm going to do requires a static IPv6 prefix though. 😅