Hey y'all,
I have a small network with opnsense firewall, a unify ap, some client in different subnets, vpn, DNS and some servers.
As I am completely self thought, I got everything to run reading the docs and forums, but I have no idea how to test if what I build is safe and stable.
Are there good up to date tools, or checklists one could follow to audit the different parts of the network (most important the opnsense config)?
What do you check if looking for security issues?
The network mostly relies on client separation through different subnets on different vlans, but I fear I dont understand how for example the vpn and the nas work together in detail to be sure there is no security implication I oversee.
Also: how do you handle client authentication for devices on the same subnet? I know IP/mac-adress ARP entries are easily spoofed and therefore not secure, but I haven't seen how to do it correctly
Verify your assumptions. If your config should prohibit connections between subnets, try connecting.
For the advanced user, set up a separate device and try hacking in.
Well I did that for the parts I did understand (trying to connect to server on different subnet, trying to get an IP in the space of a different subnet to get access, trying to get internet access on networks that should have none)
I just wonder how to test for things I dont understand. I have no plan on how one would go about exploiting a flaw in my NAT or VPN setup, so I can't test it