Commit Graph

192 Commits

Author SHA1 Message Date
f0abcb522d prepare switching anon1 from openvpn to wireguard 2018-05-17 15:16:49 +02:00
ea35ec41d0 unbound: update dn42-zones forward-addr 2018-05-15 21:56:34 +02:00
Daniel Poelzleithner
acc4995197 give lxc containers more memory to reduce oom killings 2018-05-03 22:09:48 +02:00
562fe53936 cpe: prepare TL-Archer-C7v4 switching config 2018-04-24 21:17:59 +02:00
2a730e81c9 upstream.iptables: default to accept icmp 2018-04-15 20:42:55 +02:00
e8d76ced00 fix upstream/ipv6-tunnel-update.sh 2018-04-15 20:41:09 +02:00
14c60093cb upstream.ipv6-tunnel: fix ipv6-tunnel-update.sh for upstream2 2018-04-14 23:51:56 +02:00
5ef733a0d7 forgot closing " 2018-04-14 22:51:25 +02:00
4ec750f083 different ifname prefixes for nightly
related to issue #39
2018-04-14 22:41:59 +02:00
bf6f4ae912 upstream.ipv6-tunnel: add ipv6-tunnel-update.sh for upstream2 2018-04-14 22:32:06 +02:00
483ae6fc9a firewall/priv-stateful: fix rules 2018-04-14 21:50:38 +02:00
7b46fa12f1 firewall.priv-stateful: fix sh syntax 2018-04-14 21:49:28 +02:00
b75dc44dcf add firewall.priv-stateful for priv13-gw 2018-04-14 21:43:27 +02:00
13c6405b86 upstream, mgmt-gw: ip{,6}tables -i lo -j ACCEPT 2018-01-20 18:43:19 +01:00
44861a4ba6 unbound: forward with DNS Over TLS 2018-01-20 17:49:15 +01:00
ed82a45730 unbound: forward to 9.9.9.9 2018-01-20 17:43:20 +01:00
8f63e23f1c lxc-containers/config: fix gw6 2017-12-11 00:38:15 +01:00
d9d6c8cff0 Revert "apply mgmt-gw's firewall via lxc-hook"
This reverts commit 2f202d7b2f.

The referenced mgmt-gw.sh gets provisioned inside the container so it
does not make sense to call it on the host.
2017-12-11 00:36:10 +01:00
7137841c96 Revert "unbound: enable forwarding to freenom.world caches"
This reverts commit 956c71944b.
2017-11-16 17:55:36 +01:00
73b7339ac9 /etc/network/if-{pre-,}up.d/*: export PATH 2017-11-12 00:33:29 +01:00
885510e633 commit recent changes 2017-10-07 18:39:01 +02:00
372a0effd0 bird6.conf: export bgp into ospf 2017-10-03 16:44:27 +02:00
3dd3bb028b bond-slaves: hot-fix 2017-07-18 20:17:48 +02:00
02e8b3948a cpe: fix radius auth_secret 2017-07-13 01:24:07 +02:00
869bfc6c56 due to required auth_server_secret 2017-07-13 01:09:53 +02:00
b7014a7018 cpe: start radio/iface numbering at 0 2017-07-13 01:08:00 +02:00
a1a247f254 cpe: fix ifnum with this one weird trick 2017-07-13 01:03:31 +02:00
9628f7d370 cpe: fix jinja syntax 2017-07-13 00:53:59 +02:00
5b6f90e4be cpe: discriminate wifi ifnames with -eap suffix 2017-07-13 00:41:21 +02:00
87d042e102 firewall.mgmt-gw: permit radius.hq.c3d2.de 2017-07-13 00:23:59 +02:00
2361978c55 configurable server and port 2017-07-03 23:34:45 +02:00
131fc9c73c noauth eap with radius.hq.c3d2
so a network proofs its validity to the subscriber
2017-06-24 05:09:56 +02:00
root
07b838a4da Merge branch 'master' of https://github.com/zentralwerk/network 2017-05-29 19:47:45 +02:00
webzwo0i
2f202d7b2f apply mgmt-gw's firewall via lxc-hook 2017-05-29 19:46:45 +02:00
d52e9e6fe7 ipv6-tunnel: migrate to systemd-networkd 2017-05-18 23:52:24 +02:00
96c9a2d2f9 ipv6-tunnel: add ifupdown pkg dependency 2017-05-17 01:09:34 +02:00
5365eb116e prepare ipv6-tunnel with he.net for upstream2 2017-05-17 01:07:06 +02:00
35da64f481 cpe: implement TL-WR740N, prepare ap22 2017-05-11 21:05:04 +02:00
0ca4e03a69 collectd: add network downstream 2017-03-28 17:31:37 +02:00
9fc6caec0d cpe: stop dnsmasq+uhttpd on aps 2017-03-28 17:30:05 +02:00
ee98af9fa8 cpe: sensible wifi ifname in wifi-on-link.sh 2017-03-28 16:52:42 +02:00
08b1a1dd17 cpe: try configuring sensible wifi ifnames
fixes GH issue #32
2017-03-28 16:51:13 +02:00
163f1a57f9 cpe, switches: replace ap18 with ap21 2017-03-28 16:38:23 +02:00
82144147e8 switches/HP-procurve-2824: split bond/trunk configuration 2017-03-18 23:31:11 +01:00
956c71944b unbound: enable forwarding to freenom.world caches 2017-03-13 22:35:59 +01:00
3ed2225040 bind: pin dyn-domain.zone serial to 1 2017-03-13 01:28:31 +01:00
a0eebbdc67 bind: fix root-domain.zone 2017-03-12 03:17:15 +01:00
e562d1e519 bind: implement dyndns 2017-03-12 03:17:15 +01:00
8f64476c2a bind: document named.conf 2017-03-12 03:17:15 +01:00
25b5f8b9fb remove broken nat66 upstream for upstream[12] 2017-03-12 03:17:15 +01:00