Aller à :navigation, rechercher
Wiki





























De.png
En.png
Fr.png








































12.6.2
  • (v12.6.0)
  • (v12.6.0)
  • (v12.6.0)
  • (v12.6.0)
VPN






12.6.2
  • (v12.6.0)
  • (v12.6.0)
  • (v12.6.0)
  • (v12.6.0)
  • (v12.6.0)
VPN

notempty
: v12.6

[[Datei:]]
x25519-device
X25519
(PEM) (PEM) [[Datei:]]


ED25519/X25519 Export Format: PEM
(PEM) (PEM)

[[Datei:]]



FQDN a.vpn.anyideas.de b.vpn.anyideas.de
' 10.1.0.0/16 10.2.0.0/16 10.0.1.0/24
' 10.0.1.1/24 10.0.1.2/24
' fd00:a:0:0::0/64 fd00:b:0:0::0/64 fd00:0:0:0::0/64
' fd00:0:0:0::1/64 fd00:0:0:0::2/64
UTM Roadwarrior
FQDN a.vpn.anyideas.de
' 10.1.0.0/16 10.0.1.0/24
' 10.0.1.1/24 10.0.1.201/24
' fd00:a:0:0::0/64 fd00:0:0:0::0/64
' fd00:0:0:0::1/64 fd00:0:0:0::C9/64
[[Datei:]]
notempty
v12.6.0
|| ||
notempty
v12.6.0
   

[Interface] Address = 10.0.0.1/24 Address = C0FF::EEEE/64 ListenPort = 51824 PrivateKey = interfacePrivateKeyaaaaaaaaaaaaaaaaaaaaaaaa= [Peer] AllowedIPs = 10.0.0.2/32, 10.0.0.3/32 AllowedIPs = 10.0.0.4/32 Endpoint = 1.2.3.4:51825 PersistentKeepalive = 30 PresharedKey = peerPresharedKeyaaaaaaaaaaaaaaaaaaaaaaaaaaa= PublicKey = peerPublicKeyaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa=

wg0 [[Datei:]]
wg_server
10.0.1.1/24
fd00:0:0:0::1/64
51820Link=
  •    



  • x25519_a.vpn
       
    [[Datei:]]
    peer_rw
    » »
  •    
  •    Link=
       

  •    


  • x25519 b vpn pub pem
  • ?

  • •••••••••••••••••••••••••••

  • 25Link=
    AD
    AD
    [[Datei: ]]
    [[Datei: ]]
    (IPv4):    
    (IPv6):    
       
    [[Datei:]]
    wireguard-wg0

    »wg-net-peer_rw»wg-net6-peer_rw
    wg0-network


    WireGuard Client
  • [[Datei: ]]

    [Interface] PrivateKey = # PrivatKey für RW Address = # Netz-IP für den Roadwarrior DNS = # IP_DES_DNServers (optional), # Search Domain (optional) MTU = 1420 # (optional)
    [Peer] PublicKey = # PublicKey derUTM PresharedKey = # PresharedKey AllowedIPs = # ' Endpoint = # ' persistentkeepalive = # (optional)


       
    sFWO… …LmDM=
    '
    [Interface]
    PrivateKey = uIp… …9E3XA=
  • Address = 10.0.1.201/32
    DNS = 10.0.1.1, beispiel.local
    MTU = 1420
    ListenPort = 51820
    [Peer]
    PublicKey = beN9ikz… …Do=
    PresharedKey = 29… …/Wipaxs=
    AllowedIPs = 10.1.0.0/16
    Endpoint = a.vpn.anyideas.de:51820
    persistentkeepalive = 25 Keepalive


































    '


    Connection Rate Limit.png
    Connection Rate Limit Access.png


    extc-
    CONNECTION_RATE_LIMIT_TCP 0
    CONNECTION_RATE_LIMIT_TCP_PORTS
    CONNECTION_RATE_LIMIT_UDP 20 / 0
      
    CONNECTION_RATE_LIMIT_UDP_PORTS

    extc value get application securepoint_firewall

    spcli extc value get application securepoint_firewall | grep RATE

    application |variable |value --------------------+-------------------------------+----- securepoint_firewall |… |… |CONNECTION_RATE_LIMIT_TCP |0 |CONNECTION_RATE_LIMIT_TCP_PORTS| |CONNECTION_RATE_LIMIT_UDP |20 |CONNECTION_RATE_LIMIT_UDP_PORTS|

    extc value set application securepoint_firewall variable CONNECTION_RATE_LIMIT_TCP value 20
    system update rule
  • extc value set application securepoint_firewall variable CONNECTION_RATE_LIMIT_TCP value 0
    system update rule
    extc value set application securepoint_firewall variable CONNECTION_RATE_LIMIT_TCP_PORTS value [ 443 11115 ]
    system update rule

    extc value set application securepoint_firewall variable CONNECTION_RATE_LIMIT_TCP_PORTS value [ ]
    system update rule

    extc value set application securepoint_firewall variable CONNECTION_RATE_LIMIT_UDP value 20
    system update rule

  • extc value set application securepoint_firewall variable CONNECTION_RATE_LIMIT_UDP value 0
    system update rule
    extc value set application securepoint_firewall variable CONNECTION_RATE_LIMIT_UDP_PORTS value [ 1194 1195 ]
    system update rule

    extc value set application securepoint_firewall variable CONNECTION_RATE_LIMIT_UDP_PORTS value [ ]
    system update rule

    extc value set application securepoint_firewall variable CONNECTION_RATE_LIMIT_TCP value 20
    extc value set application securepoint_firewall variable CONNECTION_RATE_LIMIT_TCP_PORTS value [ 443 11115 ]
    extc value set application securepoint_firewall variable CONNECTION_RATE_LIMIT_UDP value 20
    extc value set application securepoint_firewall variable CONNECTION_RATE_LIMIT_UDP_PORTS value [ ]
    system update rule