Projekt

Allgemein

Profil

PfSense » Historie » Version 11

Jeremias Keihsler, 17.04.2024 09:30

1 1 Jeremias Keihsler
h1. PfSense
2
3 6 Jeremias Keihsler
h2. Install pfSense on an APU-Box
4
5
h3. connect via serial interface
6
7
see also https://redmine.omb-automation.com/projects/dw_os_cos9/wiki/Howto_screen
8
9 7 Jeremias Keihsler
h3. copy image to USB-stick
10
11 9 Jeremias Keihsler
see also https://redmine.omb-automation.com/projects/dw_os_cos9/wiki/Howto_dd
12
13 7 Jeremias Keihsler
<pre><code class="shell">
14
dd if=pfSense-CE-memstick-serial-2.7.2-RELEASE-amd64.img of=/dev/sdb bs=4M status=progress
15
</code></pre>
16
17 1 Jeremias Keihsler
h2. OpenVPN-Server setup
18
19 4 Jeremias Keihsler
taken from: 
20
* https://www.biteno.com/tutorial/openvpn-auf-einer-pfsense-firewall-einrichten/
21
* https://www.thomas-krenn.com/de/wiki/OPNsense_OpenVPN_f%C3%BCr_Road_Warrior_einrichten
22 2 Jeremias Keihsler
23 5 Jeremias Keihsler
h3. using pfSense as OpenVPN-client in a satellite-office
24
25 10 Jeremias Keihsler
https://docs.netgate.com/pfsense/en/latest/recipes/openvpn-s2s-tls.html
26
27 11 Jeremias Keihsler
friendly reminder .. allow the satellite-office in the @smb.conf@ on your server as well
28
29 10 Jeremias Keihsler
this uses an outdated 'shared-key' approach
30
31 5 Jeremias Keihsler
https://mitky.com/pfsense-openvpn-site-to-site-vpn/
32
33 2 Jeremias Keihsler
h2. reach pfSense from abroad via SSH-Tunnel
34
35
taken from: http://blogs.uni-due.de/zim/2014/01/30/es-muss-nicht-immer-vpn-sein-ein-ssh-tunnel-realisiert-einen-socks-proxy-fur-nat-umgebungen-oder-ipv6-only-angebundene-unitymedia-kunden/
36
see also "SSH"