Changes between Version 47 and Version 48 of WikiStart


Ignore:
Timestamp:
May 6, 2013, 12:08:04 PM (12 years ago)
Author:
walter
Comment:

--

Legend:

Unmodified
Added
Removed
Modified
  • WikiStart

    v47 v48  
    145145}}}
    146146
    147 #example code#/etc/config/dhcp
     147#example code# /etc/config/dhcp
    148148{{{
    149149config dnsmasq
     
    187187}}}
    188188
    189 #example code#/etc/config/firewall
     189#example code# /etc/config/firewall
    190190{{{
    191191config defaults
     
    324324}}}
    325325
    326 #example code#/etc/config/network
     326#example code# /etc/config/network
    327327{{{
    328328# Copyright (C) 2006 OpenWrt.org
     
    359359}}}
    360360
    361 #example code#/etc/config/system
     361#example code# /etc/config/system
    362362{{{
    363363config  system
     
    372372}}}
    373373
    374 #example code#/etc/config/wireless
     374#example code# /etc/config/wireless
    375375{{{
    376376config wifi-device  radio0 #! names and config parameters are different for wifi architectures, ar71xx,brcm47xx,x86,etc <---
     
    380380        option hwmode   11bg #when using 5ghz vs 2,4ghz '11na' must be set! <---
    381381        option htmode   HT20
     382#       option isolate  1 #! TODO test <---
    382383        list ht_capab   SHORT-GI-40
    383384        list ht_capab   TX-STBC
     
    406407}}}
    407408
    408 #example code#/etc/init.d/openvpn
     409#example code# /etc/init.d/openvpn
    409410{{{
    410411#!/bin/sh /etc/rc.common
     
    424425}}}
    425426
    426 #example code#/etc/init.d/sysntpd
     427#example code# /etc/init.d/sysntpd
    427428{{{
    428429#!/bin/sh /etc/rc.common
     
    460461}}}
    461462
    462 #example code#/etc/firewall.user
     463#example code# /etc/firewall.user
    463464{{{
    464465# This file is interpreted as shell script.
     
    480481}}}
    481482
    482 #example code#/etc/inittab
     483#example code# /etc/inittab
    483484{{{
    484485::sysinit:/etc/init.d/rcS S boot
     
    489490}}}
    490491
    491 #example code#/etc/rc.local
     492#example code# /etc/rc.local
    492493{{{
    493494# Put your custom commands here that should be executed once
     
    509510
    510511
    511 #example code#/sbin/wifi-update
     512#example code# /sbin/wifi-update
    512513{{{
    513514#!/bin/sh
     
    518519}}}
    519520
    520 #example code#/usr/sbin/iopenvpn
     521#example code# /usr/sbin/iopenvpn
    521522{{{
    522523#!/bin/sh
     
    611612}}}
    612613
    613 #example code#/etc/openvpn/easy-rsa/vars
     614#example code# /etc/openvpn/easy-rsa/vars
    614615{{{
    615616export KEY_COUNTRY="NL"
     
    642643}}}
    643644
    644 #example code#/usr/local/bin/eduroam-client-openvpn-cert
     645#example code# /usr/local/bin/eduroam-client-openvpn-cert
    645646{{{
    646647#!/bin/sh
     
    699700}}}
    700701
    701 #example code#/etc/openvpn/easy-rsa/keys/client.conf
     702#example code# /etc/openvpn/easy-rsa/keys/client.conf
    702703{{{
    703704client
     
    917918svn checkout http://svn.wirelessleiden.nl/svn/code/eduroam-bullet/trunk/files/ /usr/local/etc/ --depth empty
    918919cd /usr/local/etc/
    919 rm dhcpd.conf
    920920svn up dhcpd.conf
    921921}}}
     
    947947
    948948TODO:
    949 
     9493 de handleiding van de "certnode" creeert natuurlijk een openvpn server op de certnode zelf, nog testen of je openvpn kan verwijderen en de easy-rsa bestande ergens anders kan plaatsten?
    950950
    951951sunfire FIXEN?
     
    956956TODO Verzin leuke manier om dit in een batch workflow voor veel AP's clients in te passen... denken we vanuit dit concept met tar bestand of moeten we iets maken dat meteen meedere parameters zoals multiSSID ip-adres hostname wifichannel etc meeneemt op basis van MAC adres? Nog uitzoeken welk deel er naar de server moet 4 bestanden ca dh1024 server.crt/key?
    957957
    958 geen down script?
    959 
    960 Veiligheid aspect, radius authenticatie over zelf tunnels als de clients...
     958geen down.sh script voor openvpn server en client?
     959
     960Veiligheid aspect, radius authenticatie over zelfde tunnels als de clients... isolation tussen openvpn clients de AP's zelf is actief maar isolate van de wireless users op de client nog teste?
    961961
    962962TFTP without 15sec pen reset