vpn_site2site_usando_zerotier_con_bridge_en_lxc
Differences
This shows you the differences between two versions of the page.
| Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
| vpn_site2site_usando_zerotier_con_bridge_en_lxc [2024/10/28 14:29] – [Notes] oso | vpn_site2site_usando_zerotier_con_bridge_en_lxc [2025/07/10 15:41] (current) – oso | ||
|---|---|---|---|
| Line 107: | Line 107: | ||
| ---- | ---- | ||
| - | |||
| - | |||
| - | ===== About the IPTables Setup ===== | ||
| - | |||
| - | |||
| - | **Summary of IPTables Configuration for Gateway Setup** | ||
| - | |||
| - | We configured IPTables to allow `srv05` to act as a gateway between the `10.241.0.0/ | ||
| - | |||
| - | ### IPTables Rules Configuration | ||
| - | |||
| - | The configuration is as follows: | ||
| - | |||
| - | < | ||
| - | # Generated by iptables-save v1.8.10 (nf_tables) on Sun Oct 27 21:46:33 2024 | ||
| - | *filter | ||
| - | :INPUT ACCEPT [27860: | ||
| - | :FORWARD ACCEPT [0:0] | ||
| - | :OUTPUT ACCEPT [0:0] | ||
| - | -A INPUT -p tcp -m tcp --dport 6162 -m comment --comment "Veeam transport rule" -j ACCEPT | ||
| - | -A INPUT -p tcp -m tcp --dport 6160 -m comment --comment "Veeam deployment rule" -j ACCEPT | ||
| - | COMMIT | ||
| - | |||
| - | *nat | ||
| - | :PREROUTING ACCEPT [0:0] | ||
| - | :INPUT ACCEPT [0:0] | ||
| - | :OUTPUT ACCEPT [0:0] | ||
| - | : | ||
| - | -A POSTROUTING -o lxcbr0 -s 10.241.0.0/ | ||
| - | COMMIT | ||
| - | |||
| - | *filter | ||
| - | :INPUT ACCEPT [0:0] | ||
| - | :FORWARD DROP [0:0] | ||
| - | -A FORWARD -s 10.241.0.0/ | ||
| - | -A FORWARD -s 192.168.88.0/ | ||
| - | :OUTPUT ACCEPT [0:0] | ||
| - | COMMIT | ||
| - | </ | ||
| - | |||
| - | ==== Notes ==== | ||
| - | |||
| - | * **Routing**: | ||
| - | * **SNAT Rule**: The '' | ||
| - | * **Unprivileged LXC Consideration**: | ||
| - | |||
vpn_site2site_usando_zerotier_con_bridge_en_lxc.1730125746.txt.gz · Last modified: 2024/10/28 14:29 by oso
