Search
You can find the results of your search below.
Fulltext results:
- Wireguard VPN access from WAN to LAN @linux_router
- etting-up-a-server-firewall-with-nftables-that-support-wireguard-vpn/|Setting up a server firewall with nftables that support WireGuard VPN]] * [[https://engineerworkshop.co... he server side: ''sudo tcpdump -i wan_device -c 5 port vpn_port'', where wan_device is the wan device, in my case ppp1 and vpn_port is the port number wireguard is set to, in my cas... add rule ip nat prerouting ip daddr $wan_ip4 udp dport $vpn_port counter dnat to $vpn_ip4 - sudo nft add rule inet firewall input iifname $wan dport $vpn_port counter accept - Wireguard server to LAN -
- ISP IPoE DHCP Setup Notes @linux_router
- Duplex: full Port: tp Address: 192.168.5.2 ... t[763]: DHCPDISCOVER on enp1s0 to 255.255.255.255 port 67 interval 8 Jan 04 07:34:37 kptr dhclient[763]: DHCPDISCOVER on enp1s0 to 255.255.255.255 port 67 interval 11 Jan 04 07:34:49 kptr dhclient[763]: DHCPDISCOVER on enp1s0 to 255.255.255.255 port 67 interval 18 Jan 04 07:35:07 kptr dhclient[763]
- NFTables Configuration @linux_router
- er address</color>\\ <tab3>define <color red>vpn_port = 51914</color><color blue> #definition of wireguard server port</color>\\ <tab3><color #000060/#F0F0FF>#define</... e TCP!</color>\\ <tab6><color blue> # bootps, port 67 and bootpc, port 68 are for DHCP on both TCP and UDP, but we only ... #F0F0E0> This creates a set of type inet_service (port number or range). The flags interval directive enables port ranges to be used. After that, you just set eleme... ence all of these values in the rules. We can use port numbers, service names and port ranges.\\ Sets provide a performant way to use g
- turn server @docker_notes
- server for TLS & DTLS services in form of # <ip>:<port>. If the port number is omitted, then the default port # number 5349 for the TLS/DTLS protocols will be ... #secure-stun # Mobility with ICE (MICE) specs support. # #mobility # Allocate Address Family according... # #proc-group=<group-name> # Turn OFF the CLI support. # By default it is always ON. # See also options cli-ip and cli-port. # #no-cli #Local system IP address to be used f
- Docker nginx / php notes @docker_notes
- E_ADDR $remote_addr; fastcgi_param REMOTE_PORT $remote_port; fastcgi_param SERVER_ADDR $server_addr; fastcgi_param SERVER_PORT $server_port; fastcgi_param SERVER_NAME $server_name; ... E_ADDR $remote_addr; fastcgi_param REMOTE_PORT $remote_port; fastcgi_param SERVER_ADDR $server_addr; fastcgi_param SERVER_PORT $server_port; fastcgi_param SERVER_NAME $server_name;
- Docker mailserver @docker_notes
- ww.mailercheck.com/articles/how-to-read-a-dmarc-report-and-actually-understand-it|How to read a DMARC report—and actually understand it!]] =====rspamd===== ... *[[https://techoverflow.net/2021/07/18/how-to-export-certificates-from-traefik-certificate-store/|How to export certificates from Traefik certificate store]] python script *[[https://r4uch.com/export-traefik-certificates/|Export Traefik Certificates]] using bash script with ''j... ter/build.md|The Compose Specification - Build support]] *Alpine *[[https://pkgs.alpinelinux.org/p
- Nextcloud Container @docker_notes
- lem without and easy solution. Nextcloud main support looks Apache web server based with little Nginx support and even less Traefik support. Some resources rel... Set an app config value config:import Import a list of configs config:list ... tabase to the newly configured one deck deck:export Export a JSON dump of user data deck:import Import data deck:transfer-ownership Change owner of de
- NFTables IP Control @linux_router
- both TCP and UDP, but we only use TCP! # bootps, port 67 and bootpc, port 68 are for DHCP on both TCP and UDP, # but we only use UDP! # domain is port 53 for DNS requests on TCP & UDP. # openvnp is port 1194 on both TCP and UDP, but we are not using yet.... ip protocol tcp jump tcp_cek tcp dport ssh counter # accept established conne
- Reverse Proxy Server - Traefik @docker_notes
- . =====Entrypoints===== The Standard entry point port normally defined are HTTP (port 80 and perhaps 8080) and HTTPS (port 443). If you are using other services then addit... raefik certificates==== *[[https://r4uch.com/export-traefik-certificates/|Export Traefik Certificates]] *Need to install the jq ... so [[https://techoverflow.net/2021/07/18/how-to-export-certificates-from-traefik-certificate-store/|How to export certificates from Traefik certificate store]] in
- Back-up Server Old Setup @home_server:home_server_setup:other_services
- | ✘ | Change volume group metadata format | | import | ''vgimport'' | ✘ | ✘ | ✔ | ✘ | Register exported volume group with system | | export | ''vgexport'' | ✘ | ✘ | ✔ | ✘ | Unregister volume gro... | ''vgimportclone'' | ✘ | ✘ | ✔ | ✘ | Import a VG from cloned PVs | | cfgbackup | ''vgcfgbacku... isk1'' is the remote exported NFS mount point (/export/Disk1 is no longer accepted syntax in NFS4.) *
- NFS @home_server:home_server_setup:other_services
- id can just be a unique assigned integer.) * /export/Disk1 and /export/Disk2 have been commented out as they are form /export/storage using mergerfs. Adjust the ''sudo vim /etc/fstab'' file to allow for boot setup of nfs export mount points. <code> #<file system> ... 0 #/media/Disk1 /export/Disk1 bind bind 0 0 #/media/Disk2 /export/Disk2 bind bind 0 0 /srv/st
- KPTree - Email Server Setup @home_server
- rform login is ''ssl:%%//%%sub1.example.com'' and port 993 (standard IMAP secure port) *Similarly, The SMTP server host is ssl:sub1.example.com and port 25 (not 465). There is no SMTP username and passw
- IPTables Configuration @linux_router
- ections to get sent out -A INPUT -p udp -m udp --dport 33434:33523 -j REJECT --reject-with icmp-port-unreachable # DNS - accept from LAN -A INPUT -i br1 -p tcp --dport 53 -j ACCEPT -A INPUT -i br1 -p udp --dport 53 -j ACCEPT # SSH - accept from LAN -A INPUT -i br1 -p tcp --dport 22 -j ACCEPT # DHCP client requests - accept fro
- KPTree Torrent VM Setup @home_server
- **-p 8080:8080 -p 9777:9777/udp \** -p IP:host_port:container_port. The Kodi ports are described below, with source ... sometimes was IPv6 (strange) Kodi headless webui port is on port 8080, see Kodi documentation Web interface and We... docker <name> log file online output *''docker port <name>'' to see docker <name> port mappings to host ==Start container at boot:== I
- Docker - diun & ntfy @docker_notes
- bled, ntfy will listen # on a dedicated listen IP/port, which can be accessed via the web browser on http://<ip>:<port>/debug/pprof/. # This can be helpful to expose bo