Hello all you lovely people!

I’m trying to figure out if I can port forward to different servers based on the destination domain.

I have a domain with a wildcard cert and I’d like to be able to route all traffic headed towards “1.domain.com” to a server I’m calling “1”. I’d still like traffic headed to domain.com to go to where it’s currently going, we can call this server “0”, and to be able to have a 2.domain.com or 3 or 4 in the future.

I thought that having a port forward rule with: interface: WAN Protocol: any source: any destination: a url alias including 1.domain.com redirect target ip: local ip

Would work, but it doesn’t seem to. Any tips?

You are viewing a single thread.
View all comments
1 point

You can do this with HAProxy already in opnsense. And yes you can route more than just HTTP. (when you are making the Backend rules, switch from Layer 7, to Layer 4. Only thing is that it will do TCP, but not UDP.

As you have posted, port forward cannot tell what the domain even is. (and the url alias is not used the way you are thinking).

permalink
report
reply

OPNsense

!opnsense@lemmy.world

Create post

All discussions about the open source, FreeBSD-based firewall called OPNsense.

Community stats

  • 1

    Monthly active users

  • 23

    Posts

  • 42

    Comments

Community moderators