Brief History
I run a number of Ubiquiti network switches and access points all managed by a self hosted manager running in a VM. Behind an OPNsense router with multiple physical NICs and physical networks.
Original setup:
Internet-->ISPModem_10.0.0.x-->OPNsense-->Mutiple Home/LAB networks (all RFC1918 networks)
This setup worked great as I was able to setup firewall rules to allow access between Home/LAN Networks as well as any devices in the ISP Network (10.0.0.x). The only problem with this was my Home/Family network would go down if/WHEN I broke it and reprograming all the IOT devices and computers was very annoying. To resolve this I purchased a Ubiquiti Cloud Gateway Ultra (UCGU) to manage the Home/Family Network as well as manage all the Ubiquiti devices on the Home/Family network. I installed this along side the OPNsense router that now only serves to create my LAB Networks.
ISPModem_10.0.0.x/24-->OPNsense-->LAB networks (all RFC1918 networks)
ISPModem_10.0.0.x/24-->UCGU-->Home/Family Network(RFC1918 network)
I got really busy recently and am wondering if chasing an actual workable solution: Would setting up OSPF on the Gateway Ultra and OPNSense allow each system to talk with the other without the need for NAT port forwarding? I would like to use my Home/Family network for example to access one or all of my LAB Networks or vice versa. I could then utilize firewall rules on OPNsense or UCGU to further harden the networks.
I run a number of Ubiquiti network switches and access points all managed by a self hosted manager running in a VM. Behind an OPNsense router with multiple physical NICs and physical networks.
Original setup:
Internet-->ISPModem_10.0.0.x-->OPNsense-->Mutiple Home/LAB networks (all RFC1918 networks)
This setup worked great as I was able to setup firewall rules to allow access between Home/LAN Networks as well as any devices in the ISP Network (10.0.0.x). The only problem with this was my Home/Family network would go down if/WHEN I broke it and reprograming all the IOT devices and computers was very annoying. To resolve this I purchased a Ubiquiti Cloud Gateway Ultra (UCGU) to manage the Home/Family Network as well as manage all the Ubiquiti devices on the Home/Family network. I installed this along side the OPNsense router that now only serves to create my LAB Networks.
ISPModem_10.0.0.x/24-->OPNsense-->LAB networks (all RFC1918 networks)
ISPModem_10.0.0.x/24-->UCGU-->Home/Family Network(RFC1918 network)
I got really busy recently and am wondering if chasing an actual workable solution: Would setting up OSPF on the Gateway Ultra and OPNSense allow each system to talk with the other without the need for NAT port forwarding? I would like to use my Home/Family network for example to access one or all of my LAB Networks or vice versa. I could then utilize firewall rules on OPNsense or UCGU to further harden the networks.