Commit Graph

179 Commits

Author SHA1 Message Date
13c6405b86 upstream, mgmt-gw: ip{,6}tables -i lo -j ACCEPT 2018-01-20 18:43:19 +01:00
44861a4ba6 unbound: forward with DNS Over TLS 2018-01-20 17:49:15 +01:00
ed82a45730 unbound: forward to 9.9.9.9 2018-01-20 17:43:20 +01:00
8f63e23f1c lxc-containers/config: fix gw6 2017-12-11 00:38:15 +01:00
d9d6c8cff0 Revert "apply mgmt-gw's firewall via lxc-hook"
This reverts commit 2f202d7b2f.

The referenced mgmt-gw.sh gets provisioned inside the container so it
does not make sense to call it on the host.
2017-12-11 00:36:10 +01:00
7137841c96 Revert "unbound: enable forwarding to freenom.world caches"
This reverts commit 956c71944b.
2017-11-16 17:55:36 +01:00
73b7339ac9 /etc/network/if-{pre-,}up.d/*: export PATH 2017-11-12 00:33:29 +01:00
885510e633 commit recent changes 2017-10-07 18:39:01 +02:00
372a0effd0 bird6.conf: export bgp into ospf 2017-10-03 16:44:27 +02:00
3dd3bb028b bond-slaves: hot-fix 2017-07-18 20:17:48 +02:00
02e8b3948a cpe: fix radius auth_secret 2017-07-13 01:24:07 +02:00
869bfc6c56 due to required auth_server_secret 2017-07-13 01:09:53 +02:00
b7014a7018 cpe: start radio/iface numbering at 0 2017-07-13 01:08:00 +02:00
a1a247f254 cpe: fix ifnum with this one weird trick 2017-07-13 01:03:31 +02:00
9628f7d370 cpe: fix jinja syntax 2017-07-13 00:53:59 +02:00
5b6f90e4be cpe: discriminate wifi ifnames with -eap suffix 2017-07-13 00:41:21 +02:00
87d042e102 firewall.mgmt-gw: permit radius.hq.c3d2.de 2017-07-13 00:23:59 +02:00
2361978c55 configurable server and port 2017-07-03 23:34:45 +02:00
131fc9c73c noauth eap with radius.hq.c3d2
so a network proofs its validity to the subscriber
2017-06-24 05:09:56 +02:00
root
07b838a4da Merge branch 'master' of https://github.com/zentralwerk/network 2017-05-29 19:47:45 +02:00
webzwo0i
2f202d7b2f apply mgmt-gw's firewall via lxc-hook 2017-05-29 19:46:45 +02:00
d52e9e6fe7 ipv6-tunnel: migrate to systemd-networkd 2017-05-18 23:52:24 +02:00
96c9a2d2f9 ipv6-tunnel: add ifupdown pkg dependency 2017-05-17 01:09:34 +02:00
5365eb116e prepare ipv6-tunnel with he.net for upstream2 2017-05-17 01:07:06 +02:00
35da64f481 cpe: implement TL-WR740N, prepare ap22 2017-05-11 21:05:04 +02:00
0ca4e03a69 collectd: add network downstream 2017-03-28 17:31:37 +02:00
9fc6caec0d cpe: stop dnsmasq+uhttpd on aps 2017-03-28 17:30:05 +02:00
ee98af9fa8 cpe: sensible wifi ifname in wifi-on-link.sh 2017-03-28 16:52:42 +02:00
08b1a1dd17 cpe: try configuring sensible wifi ifnames
fixes GH issue #32
2017-03-28 16:51:13 +02:00
163f1a57f9 cpe, switches: replace ap18 with ap21 2017-03-28 16:38:23 +02:00
82144147e8 switches/HP-procurve-2824: split bond/trunk configuration 2017-03-18 23:31:11 +01:00
956c71944b unbound: enable forwarding to freenom.world caches 2017-03-13 22:35:59 +01:00
3ed2225040 bind: pin dyn-domain.zone serial to 1 2017-03-13 01:28:31 +01:00
a0eebbdc67 bind: fix root-domain.zone 2017-03-12 03:17:15 +01:00
e562d1e519 bind: implement dyndns 2017-03-12 03:17:15 +01:00
8f64476c2a bind: document named.conf 2017-03-12 03:17:15 +01:00
25b5f8b9fb remove broken nat66 upstream for upstream[12] 2017-03-12 03:17:15 +01:00
webzwo0i
c2bfd17143 Jeder access Port ist default in vlan 1, welches wir auch als mgmt
belassen haben. Falls ein Port als mgmt konfiguriert werden soll, muss
das eventuell vorhandene vlan gelöscht werden. Explizit vlan 1 zu
setzen geht nicht.
2017-03-02 02:32:36 +01:00
webzwo0i
a236e82cff name command is illegal illegal here 2017-03-02 02:31:08 +01:00
4378dfb7bd switches: dynamic link-aggregation for 3com-4200G
no more trouble with static groups
2017-02-09 21:30:45 +01:00
c2ece5fd83 switches: fix 3com bonding 2017-02-09 01:59:50 +01:00
beedab8bb3 cpe/ap_install_collectd.sh: fix plugins 2017-02-07 02:52:51 +01:00
2123639965 cpe: fix gateways 2017-02-07 02:44:38 +01:00
c87ae7784f cpe: syntax fixes 2017-02-07 02:43:26 +01:00
5b5f86eb8a cpe: unify ap mgmt conf 2017-02-07 02:42:04 +01:00
d05eedc42c cpe: script fixes 2017-02-07 02:36:15 +01:00
aca557a875 prepare cpe/ap_install_collectd.sh 2017-02-07 02:28:57 +01:00
565feefd28 add ssh pubkey for cpe.ap 2017-02-07 02:11:32 +01:00
b5c20fcd6e cpe.ap: configure mgmt ipv6 2017-02-07 02:11:06 +01:00
b34306f458 salt.unbound: allow mgmt access 2017-02-07 01:56:37 +01:00