Aller à :navigation, rechercher
Wiki





























De.png
En.png
Fr.png








































12.6.2
  • (v12.6.0)
  • (v12.6.0)
  • (v12.6.0)
  • (v12.6.0)
VPN






12.6.2
  • (v12.6.0)
  • (v12.6.0)
  • (v12.6.0)
  • (v12.6.0)
  • (v12.6.0)
VPN

notempty
: v12.6

[[Datei:]]
x25519-device
X25519
(PEM) (PEM) [[Datei:]]


ED25519/X25519 Export Format: PEM
(PEM) (PEM)

[[Datei:]]



FQDN a.vpn.anyideas.de b.vpn.anyideas.de
' 10.1.0.0/16 10.2.0.0/16 10.0.1.0/24
' 10.0.1.1/24 10.0.1.2/24
' fd00:a:0:0::0/64 fd00:b:0:0::0/64 fd00:0:0:0::0/64
' fd00:0:0:0::1/64 fd00:0:0:0::2/64
UTM Roadwarrior
FQDN a.vpn.anyideas.de
' 10.1.0.0/16 10.0.1.0/24
' 10.0.1.1/24 10.0.1.201/24
' fd00:a:0:0::0/64 fd00:0:0:0::0/64
' fd00:0:0:0::1/64 fd00:0:0:0::C9/64
[[Datei:]]
notempty
v12.6.0
|| ||
notempty
v12.6.0
   

[Interface] Address = 10.0.0.1/24 Address = C0FF::EEEE/64 ListenPort = 51824 PrivateKey = interfacePrivateKeyaaaaaaaaaaaaaaaaaaaaaaaa= [Peer] AllowedIPs = 10.0.0.2/32, 10.0.0.3/32 AllowedIPs = 10.0.0.4/32 Endpoint = 1.2.3.4:51825 PersistentKeepalive = 30 PresharedKey = peerPresharedKeyaaaaaaaaaaaaaaaaaaaaaaaaaaa= PublicKey = peerPublicKeyaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa=

wg0 [[Datei:]]
wg_server
10.0.1.1/24
fd00:0:0:0::1/64
51820Link=
  •    



  • x25519_a.vpn
       
    [[Datei:]]
    peer_rw
    » »
  •    
  •    Link=
       

  •    


  • x25519 b vpn pub pem
  • ?

  • •••••••••••••••••••••••••••

  • 25Link=
    AD
    AD
    [[Datei: ]]
    [[Datei: ]]
    (IPv4):    
    (IPv6):    
       
    [[Datei:]]
    wireguard-wg0

    »wg-net-peer_rw»wg-net6-peer_rw
    wg0-network


    '
    [[Datei:]]
    || ||
       

    [Interface] Address = 10.0.0.1/24 Address = C0FF::EEEE/64 ListenPort = 51824 PrivateKey = interfacePrivateKeyaaaaaaaaaaaaaaaaaaaaaaaa= [Peer] AllowedIPs = 10.0.0.2/32, 10.0.0.3/32 AllowedIPs = 10.0.0.4/32 Endpoint = 1.2.3.4:51825 PersistentKeepalive = 30 PresharedKey = peerPresharedKeyaaaaaaaaaaaaaaaaaaaaaaaaaaa= PublicKey = peerPublicKeyaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa=

    wg0 [[Datei: ]]
       
    10.0.1.2/24
    fd00:0:0:0::2/64
    51820Link=
  •    


  • x25519_b.vpn
       
    [[Datei: ]]
    peer-a
    »10.1.0.0/16»fd00:a:0:0::/64
  • a.vpn.anyideas.de
  • 51820Link=
       
       
    x25519_a_vpn_pub_pem
  • ?

  • …R0Z0DWUs+iCDFYzpP4=
  • 25Link=
    [[Datei: ]]

    »net-wg-peer-a


    [Interface]

    PrivateKey = $PRIVATE_KEY_FRITZBOX ListenPort = $LISTENPORT_WIREGUARD_FRITZBOX Address = $LOCAL_IP_FRITZBOX/$NETMASK
    [Peer] PublicKey = $PUBLIC_KEY_UTM PresharedKey = $PRESHAREDKEY AllowedIPs = $NETWORK_UTM/$NETMASK Endpoint = $HOSTNAME_UTM:$LISTENPORT_WIREGUARD_UTM PersistentKeepalive = 1



































    '


    Connection Rate Limit.png
    Connection Rate Limit Access.png


    extc-
    CONNECTION_RATE_LIMIT_TCP 0
    CONNECTION_RATE_LIMIT_TCP_PORTS
    CONNECTION_RATE_LIMIT_UDP 20 / 0
      
    CONNECTION_RATE_LIMIT_UDP_PORTS

    extc value get application securepoint_firewall

    spcli extc value get application securepoint_firewall | grep RATE

    application |variable |value --------------------+-------------------------------+----- securepoint_firewall |… |… |CONNECTION_RATE_LIMIT_TCP |0 |CONNECTION_RATE_LIMIT_TCP_PORTS| |CONNECTION_RATE_LIMIT_UDP |20 |CONNECTION_RATE_LIMIT_UDP_PORTS|

    extc value set application securepoint_firewall variable CONNECTION_RATE_LIMIT_TCP value 20
    system update rule
  • extc value set application securepoint_firewall variable CONNECTION_RATE_LIMIT_TCP value 0
    system update rule
    extc value set application securepoint_firewall variable CONNECTION_RATE_LIMIT_TCP_PORTS value [ 443 11115 ]
    system update rule

    extc value set application securepoint_firewall variable CONNECTION_RATE_LIMIT_TCP_PORTS value [ ]
    system update rule

    extc value set application securepoint_firewall variable CONNECTION_RATE_LIMIT_UDP value 20
    system update rule

  • extc value set application securepoint_firewall variable CONNECTION_RATE_LIMIT_UDP value 0
    system update rule
    extc value set application securepoint_firewall variable CONNECTION_RATE_LIMIT_UDP_PORTS value [ 1194 1195 ]
    system update rule

    extc value set application securepoint_firewall variable CONNECTION_RATE_LIMIT_UDP_PORTS value [ ]
    system update rule

    extc value set application securepoint_firewall variable CONNECTION_RATE_LIMIT_TCP value 20
    extc value set application securepoint_firewall variable CONNECTION_RATE_LIMIT_TCP_PORTS value [ 443 11115 ]
    extc value set application securepoint_firewall variable CONNECTION_RATE_LIMIT_UDP value 20
    extc value set application securepoint_firewall variable CONNECTION_RATE_LIMIT_UDP_PORTS value [ ]
    system update rule