Search
You can find the results of your search below.
Fulltext results:
- Wireguard VPN access from WAN to LAN
- etting-up-a-server-firewall-with-nftables-that-support-wireguard-vpn/|Setting up a server firewall with nftables that support WireGuard VPN]] * [[https://engineerworkshop.co... he server side: ''sudo tcpdump -i wan_device -c 5 port vpn_port'', where wan_device is the wan device, in my case ppp1 and vpn_port is the port number wireguard is set to, in my cas... add rule ip nat prerouting ip daddr $wan_ip4 udp dport $vpn_port counter dnat to $vpn_ip4 - sudo nft add rule inet firewall input iifname $wan dport $vpn_port counter accept - Wireguard server to LAN -
- NFTables Configuration
- er address</color>\\ <tab3>define <color red>vpn_port = 51914</color><color blue> #definition of wireguard server port</color>\\ <tab3><color #000060/#F0F0FF>#define</... routing.</color>\\ <tab6><color blue> # open ports refers to ports to open for input to this machine.</color>\\ <t... e TCP!</color>\\ <tab6><color blue> # bootps, port 67 and bootpc, port 68 are for DHCP on both TCP and UDP, but we only ... #F0F0E0> This creates a set of type inet_service (port number or range). The flags interval directive enables port ranges to be used. After that, you just set eleme
- ISP IPoE DHCP Setup Notes
- Duplex: full Port: tp Address: 192.168.5.2 ... t[763]: DHCPDISCOVER on enp1s0 to 255.255.255.255 port 67 interval 8 Jan 04 07:34:37 kptr dhclient[763]: DHCPDISCOVER on enp1s0 to 255.255.255.255 port 67 interval 11 Jan 04 07:34:49 kptr dhclient[763]: DHCPDISCOVER on enp1s0 to 255.255.255.255 port 67 interval 18 Jan 04 07:35:07 kptr dhclient[763]
- NFTables IP Control
- e forward and nat chains refer to routing. # open ports refers to ports to open for input to this machine. # ssh is port... both TCP and UDP, but we only use TCP! # bootps, port 67 and bootpc, port 68 are for DHCP on both TCP and UDP, # but we on... # allow tcp/udp open ports # tcp dport @tcp_open_ports counter accept # udp dport @udp_open_ports counter accept # everything else reject port
- Router Miscellaneous
- in Linux]] * [[https://www.stationx.net/common-ports-cheat-sheet/|Common Ports Cheat Sheet: The Ultimate Ports & Protocols List]] * [[https://www.geeksforgeeks.org/50-common-ports-you-should-know/|50 Common Ports You Should Know]] * Distribution List of Ports... etting-up-a-server-firewall-with-nftables-that-support-wireguard-vpn/|Setting up a server firewall with nftables that support WireGuard VPN]] *The Ars guide to building a [[... inics.net/lists/netfilter/msg56329.html|how to do port forwarding using nftables map]] *Redhat develop
- IPTables Configuration
- ections to get sent out -A INPUT -p udp -m udp --dport 33434:33523 -j REJECT --reject-with icmp-port-unreachable # DNS - accept from LAN -A INPUT -i br1 -p tcp --dport 53 -j ACCEPT -A INPUT -i br1 -p udp --dport 53 -j ACCEPT # SSH - accept from LAN -A INPUT -i br1 -p tcp --dport 22 -j ACCEPT # DHCP client requests - accept fro
- Router Hardware
- SO-DIMM DDR5 4800MHz, 32GB(SAMSUNG). *Ethernet Ports: 2 x Marvell AQC113C-B1-C 10Gbps Network cards(v... : 2 x M.2 2242/2280 NVMe SSD, PCIe 2.0 x 1 *USB Ports: 2 x USB-A 3.0(5Gbps), 1 x USB-C 3.2 Gen2(10Gbps... MI 2.0 and Type-C display output with 4K 60fps support *Cooling System: Full aluminum body passive coo... AMI EFI BIOS with Auto Power-on, WOL, and PXE support *Power Supply: DC IN 12-19V *Dimensions: 157
- DHCP / DNS Setup
- icann.org/resources/pages/dnssec-what-is-it-why-important-2019-03-05-en|ICANN - DNSSEC – What Is It and Why Is It Important?]] *[[https://quad9.net/support/faq/|QUAD9 FAQ]] *[[https://www.linuxbabe.com/ubuntu/dns-over-tl... acy Clients]] Says Bind9 does not not natively support TLS. =====ipv6 links===== *[[https://jochen.kir
- Debian Server Network Setup
- rt will be setup to look like a router with 1 WAN port and 3 LAN port. The WAN port will be setup on NIC1 with the LAN ports 1-3 will be on bridged NIC2-4. Ensure the bridg... ing 3 NICs are setup in bridge mode as router LAN ports. When setup in bridge mode the 3 ports effectively act as a switch with any able to acc... the optional sanza is not used here. ++++ It is important that the network/interfaces method is disable
- Wifi Router / Access Points
- D Flash and 512MB RAM. It has 4 x 1Gbit ethernet ports and 1 x 2.5Gbit ethernet port. The WAX206 does not have a USB port. There is a currently supported [[https://openwr... D Flash and 128MB RAM. It has 5 x 1Gbit ethernet ports. It has 1 x USB 3.0 port. Only having 8MB flash capacity reduces the 3rd ... |OpenWrt – First Login]] [[https://dd-wrt.com/support/documentation/|dd-wrt]], [[https://www.myopenrout
- Router VM
- ng as a network switch for the connected physical ports. (On my home server I have 4 x 1GB/s Ethernet ports and an add in PCIe card that provided a 2.5GB/s Ethernet port. All these physical ports are connected to a common network bridge device.... t allows connections of multiple virtual Ethernet ports to the bridge device. This is a commonly used fe... all * NAT (Network Address Translation) * Port forwarding to basic services * Main public
- Linux Router Background
- TP-Link VDSL modem router with 4 100Mbps ethernet ports and 2 VoIP port. One ethernet port was set up as WAN connection. -The 1000Mbps eth... uter with 2 x 2500Mbps and 2 x 10000Mbps ethernet ports running Linux Debian. (The WAN is connected to a 2.5Gbps port) -The speed tester was run in automatic mode, i
- Basic Netfilter Function Block Diagram
- e Networks]] *Oregon Tech [[http://oregontechsupport.com/articles/icmp.txt|icmp.txt]] *Digitalocean ... MP]] **Cisco** [[https://www.cisco.com/c/en/us/support/docs/ip/generic-routing-encapsulation-gre/25885-p... agmentation]], [[https://www.cisco.com/c/en/us/support/docs/ip/generic-routing-encapsulation-gre/25885-p... ag.html|MTU]], [[https://www.cisco.com/c/en/us/support/docs/ip/generic-routing-encapsulation-gre/25885-p
- Router Configuration, Switch & Server Setup
- e the of keypoints: *I set-up Ubuntu to use LAN port 2, as I want to use LAN port 1 as the Router WAN port. *I do not encrypt the home directory. (See How
- TC - Traffic Control
- reduces TCP ACK congestion on asymmetric links (important if your download is much faster than upload)