|
|
@10997
|
13 years |
richardvm |
required when the external interface has internal functions
|
|
|
@10951
|
13 years |
richardvm |
als vpn er uit mag, moet het ook ergens in mogen
|
|
|
@10918
|
13 years |
rick |
Migrate to special commands file to avoid clutter and allow re-use.
…
|
|
|
@10899
|
13 years |
rick |
Find het knap vervelend als je tijdens het hoppen elke keer de …
|
|
|
@10898
|
13 years |
rick |
external (vr0) kan twee IP of meer (1 x extern en meerdere intern) …
|
|
|
@10864
|
13 years |
rick |
Directory should not exists in file template tree, files should just …
|
|
|
@10862
|
13 years |
rick |
Part of nodefactory:ticket:177
|
|
|
@10861
|
13 years |
rick |
Do not use interface wildcards as they are highly confusing.
…
|
|
|
@10842
|
13 years |
rick |
172.16.0.0/12 is alleen WL net en kan nooit gebruikt worden als …
|
|
|
@10841
|
13 years |
rick |
Op het moment dat je inlogt met SSH op een normale proxy is je FIB=1, …
|
|
|
@10831
|
13 years |
rick |
Clean all files from /tmp older unused for 3 days .
fixes …
|
|
|
@10776
|
13 years |
rick |
Not so many boot-up noice please. I know the network is not available, …
|
|
|
@10775
|
13 years |
rick |
Nog zo'n oude rakker gevonden, wegwezen!.
|
|
|
@10774
|
13 years |
rick |
Make sure to start lvrouted as a real routing daemon and give it some …
|
|
|
@10773
|
13 years |
rick |
Default search domain will give the right domain to use (keep it standard).
|
|
|
@10770
|
13 years |
rick |
slip.log is geen standaard file en ook niet (meer) door ons gebruikt.
|
|
|
@10745
|
13 years |
rick |
Een node heeft geen externe interface.
Related-To: nodefactory#157
|
|
|
@10720
|
13 years |
rick |
Plaats de handige tools in de ... tools directory :-)
|
|
|
@10719
|
13 years |
rick |
only allow reachable 172.16.0.0/12 subnets.
Related-To: nodefactory#153
|
|
|
@10718
|
13 years |
rick |
Maak ssh beheer makkelijker door keys automatisch toe te staan.
|
|
|
@10717
|
13 years |
rick |
Cleanup of old no longer relevant files.
|
|
|
@10704
|
13 years |
rick |
Let the redirected be controlled by gformat (yaml).
Related-To: …
|
|
|
@10700
|
13 years |
rick |
Stop the false 'ath0 no subnet declaration warnings on manual reboot'
|
|
|
@10697
|
13 years |
rick |
Re-enable internet backdoor.
Related-To: nodefactory#148
|
|
|
@10694
|
13 years |
rick |
Provide an working example.
|
|
|
@10664
|
13 years |
rick |
Software watchdog voor SSHd.
Fixes: nodefactory##111
|
|
|
@10663
|
13 years |
rick |
Reverting r10662 and do it the proper way after reading the man page ;-)
|
|
|
@10651
|
13 years |
rick |
Convert script to one compatible with shadow route table idea.
…
|
|
|
@10650
|
13 years |
rick |
The routing syncer done the bad way. Should technically be an (C) …
|
|
|
@10648
|
13 years |
rick |
Gebruik een patch om te zorgen dat het _echt_ stuk gaat tijdens bouwen …
|
|
|
@10643
|
13 years |
rick |
Shuffle the dynamic entries in /etc/resolv.conf based on best Query …
|
|
|
@10641
|
13 years |
rick |
Make the NTP setup more sound.
Related-To: nodefactory#139
|
|
|
@10610
|
13 years |
rick |
Makes variables and templates much cleaner allowing easy edits and …
|
|
|
@10609
|
13 years |
rick |
The hack is flawed because of the lack of setting all kind of …
|
|
|
@10608
|
13 years |
rick |
The conditional statements and variables where not set correctly at …
|
|
|
@10607
|
13 years |
richardvm |
logging at 'user-level messages' @ syslog
|
|
|
@10606
|
13 years |
richardvm |
pf has a default block configuration, ntp wasn't explicitly allowed, …
|
|
|
@10601
|
13 years |
rick |
This beauty is part of the r10599 idea and implementation.
|
|
|
@10598
|
13 years |
rick |
Put it into logical brain ordering…
|
|
|
@10596
|
13 years |
rick |
Make sure not to /usr variables as those are not active during boot.
|
|
|
@10595
|
13 years |
rick |
Duh... time to stop. When it _is_ it should stop.
|
|
|
@10594
|
13 years |
rick |
Well... default route for ileiden is mandatory of course.
|
|
|
@10590
|
13 years |
rick |
We are going todo musical chairs over here to auto-magically reload …
|
|
|
@10589
|
13 years |
rick |
Split hybrid and special proxy setup, as the proxy setup is highly …
|
|
|
@10586
|
13 years |
rick |
Little quirk of removing the static default route set by dhclient if …
|
|
|
@10580
|
13 years |
rick |
Cosmetics for pf.hybrid.conf and sync the pf.node.conf with needed …
|
|
|
@10579
|
13 years |
rick |
While here, start rejecting junk traffic from the captive portal …
|
|
|
@10578
|
13 years |
rick |
Brain gymnastics to get the local originating packets for a default …
|
|
|
@10572
|
13 years |
rick |
Obsoleted, the flags are not properly set in rc.conf.local, so we are …
|
|
|
@10523
|
13 years |
rick |
NAT of wleiden IP on WL interfaces to WL masterip is causing issues …
|
|
|
@10520
|
13 years |
rick |
NAT rule not defined properly.
|
|
|
@10481
|
13 years |
rick |
Logging configs and check fixes:
* Network Status file.
* TinyProxy …
|
|
|
@10457
|
13 years |
rick |
Start hunting an whole bunch of those memory killers.
|
|
|
@10448
|
13 years |
rick |
Two more functionality things for hybrid nodes who needs it.
|
|
|
@10446
|
13 years |
rick |
Brand new beautiful looking firewalll
|
|
|
@10445
|
13 years |
rick |
Storing the AuthorizedKeys file globally is not safer, but way easier …
|
|
|
@10441
|
13 years |
rick |
The pf_flags are not always included causing the external definitions …
|
|
|
@10440
|
13 years |
rick |
There is a bug in the /etc/rc.d/pf. Commit original to see the diff in …
|
|
|
@10439
|
13 years |
rick |
Remove potentially very confusing file (rules are stored in …
|
|
|
@10438
|
13 years |
rick |
KISS config examples.
|
|
|
@10437
|
13 years |
rick |
OpenVPN helper configuration entries, please not Certificate …
|
|
|
@10426
|
13 years |
rick |
Move various files to the right location
|
|
|
@10425
|
13 years |
rick |
Reverting acc. committed change r10420
|
|
|
@10423
|
13 years |
rick |
The quote says it all, get rid of the comment.
|
|
|
@10422
|
13 years |
rick |
auto_resolv.conf does not seems to cope well with comments behind the …
|
|
|
@10421
|
13 years |
rick |
Eeks! This stuff _should_ be in /etc/rc.conf{.local}
|
|
|
@10420
|
13 years |
rick |
Inititial configuration bind/named nochroot directive.
|
|
|
@10419
|
13 years |
rick |
Rewrote Captive Portal to use Packet Filter (pf) instead. This is much …
|
|
|
@10418
|
13 years |
rick |
Some sample firewall configurations.
|
|
|
@10417
|
13 years |
rick |
Merging and cleanups of files found in various other places and trees …
|
|
|
@10408
|
13 years |
rick |
FAT hybrid helpers needed.
|
|
|
@10407
|
13 years |
rick |
Nice hack to publish the /var/db/pkg into /usr/local/var/db/pkg. …
|
|
|
@10383
|
13 years |
rick |
Make sure package /var/db is stored only at persistent space.
|
|
|
@10382
|
13 years |
rick |
Named/Bind configuration for hybrid setup.
|
|
|
@10381
|
13 years |
rick |
Stock BSD namedb.
|
|
|
@10242
|
13 years |
richardvm |
sync pf setup of hybrid with that of the proxies.
|
|
|
@10241
|
13 years |
richardvm |
sync pf setup of hybrid with that of the proxies.
|
|
|
@10206
|
13 years |
richardvm |
firewalling a bit better
|
|
|
@10205
|
13 years |
richardvm |
ipv6 rc rules have changed a bit in 9.0
|
|
|
@10201
|
13 years |
richardvm |
blocking port 443
|
|
|
@10200
|
13 years |
richardvm |
Blocking local access (natting prefent current setup
|
|
|
@10199
|
13 years |
richardvm |
rc.conf and ipfw.sh were not the same :-)
|
|
|
@10186
|
13 years |
richardvm |
no bridge needed and gateway is maanged by gformat
|
|
|
@10185
|
13 years |
richardvm |
firewall and portal fixes
|
|
|
@10179
|
13 years |
richardvm |
maradns conficts with dnsmasq. But I prefer the dhcp server
|
|
|
@10178
|
13 years |
richardvm |
pf file
|
|
|
@10177
|
13 years |
richardvm |
quick hack to enabl pf at boot
|
|
|
@10176
|
13 years |
richardvm |
updated pf.conf: vpn, pf (including quickhack)
|
|
|
@10175
|
13 years |
richardvm |
rename to more logical name
|
|
copied from branches/trunk/nanobsd/files/etc
|
|
|
@10173
|
13 years |
richardvm |
|