aboutsummaryrefslogtreecommitdiff
path: root/config
diff options
context:
space:
mode:
Diffstat (limited to 'config')
-rw-r--r--config/lhn2ix.txt41
1 files changed, 22 insertions, 19 deletions
diff --git a/config/lhn2ix.txt b/config/lhn2ix.txt
index 8442f03..cc0b688 100644
--- a/config/lhn2ix.txt
+++ b/config/lhn2ix.txt
@@ -1,9 +1,9 @@
set interfaces ethernet eth0 address dhcp
set interfaces ethernet eth0 description Internet
-set interfaces ethernet eth0 dhcpv6-pd pd 1 interface switch0 host-address '::1'
-set interfaces ethernet eth0 dhcpv6-pd pd 1 interface switch0 prefix-id ':1'
-set interfaces ethernet eth0 dhcpv6-pd pd 1 interface switch0 service slaac
-set interfaces ethernet eth0 dhcpv6-pd pd 1 prefix-length /56
+set interfaces ethernet eth0 dhcpv6-pd pd 0 interface switch0 host-address '::1'
+set interfaces ethernet eth0 dhcpv6-pd pd 0 interface switch0 prefix-id ':1'
+set interfaces ethernet eth0 dhcpv6-pd pd 0 interface switch0 service slaac
+set interfaces ethernet eth0 dhcpv6-pd pd 0 prefix-length 56
set interfaces ethernet eth0 dhcpv6-pd rapid-commit enable
set interfaces ethernet eth0 duplex auto
set interfaces ethernet eth0 ipv6 dup-addr-detect-transmits 1
@@ -31,6 +31,7 @@ set interfaces ethernet eth5 speed auto
set interfaces loopback lo
set interfaces switch switch0 address 'fdb1:4242:3538:2008::1/64'
set interfaces switch switch0 address 192.168.11.1/24
+set interfaces switch switch0 address '2a06:2240:f00d:b50d::/64'
set interfaces switch switch0 description Local
set interfaces switch switch0 ipv6 address
set interfaces switch switch0 ipv6 dup-addr-detect-transmits 1
@@ -40,14 +41,14 @@ set interfaces switch switch0 switch-port interface eth2
set interfaces switch switch0 switch-port interface eth3
set interfaces switch switch0 switch-port interface eth4
set interfaces switch switch0 switch-port vlan-aware disable
-set interfaces wireguard wg0 address 'fdb1:4242:3538:ffff:18b7:d3ec:5608:db9b/64'
-set interfaces wireguard wg0 description tnet-knot
-set interfaces wireguard wg0 mtu 1420
-set interfaces wireguard wg0 peer Up8+DhBlMp+/fpaxyGDQBnH/4tZnHojcAKZWCr5sSAk= allowed-ips '::0/0'
-set interfaces wireguard wg0 peer Up8+DhBlMp+/fpaxyGDQBnH/4tZnHojcAKZWCr5sSAk= endpoint 'knot.inamo.no:51002'
-set interfaces wireguard wg0 peer Up8+DhBlMp+/fpaxyGDQBnH/4tZnHojcAKZWCr5sSAk= persistent-keepalive 60
-set interfaces wireguard wg0 private-key 4IhYSjPBx5K2TuEYs2bl3rjaKSLdx3HNgbjn2BpJimg=
-set interfaces wireguard wg0 route-allowed-ips false
+set interfaces wireguard wg1 address 'fdb1:4242:3538:2f02::b/64'
+set interfaces wireguard wg1 description tnet-knot
+set interfaces wireguard wg1 mtu 1420
+set interfaces wireguard wg1 peer Up8+DhBlMp+/fpaxyGDQBnH/4tZnHojcAKZWCr5sSAk= allowed-ips '::0/0'
+set interfaces wireguard wg1 peer Up8+DhBlMp+/fpaxyGDQBnH/4tZnHojcAKZWCr5sSAk= endpoint 'knot.inamo.no:51002'
+set interfaces wireguard wg1 peer Up8+DhBlMp+/fpaxyGDQBnH/4tZnHojcAKZWCr5sSAk= persistent-keepalive 60
+set interfaces wireguard wg1 private-key 4IhYSjPBx5K2TuEYs2bl3rjaKSLdx3HNgbjn2BpJimg=
+set interfaces wireguard wg1 route-allowed-ips false
set policy prefix-list6 bitraf-dn42 rule 1 action permit
set policy prefix-list6 bitraf-dn42 rule 1 description 'tnet subnetworks'
set policy prefix-list6 bitraf-dn42 rule 1 le 128
@@ -55,13 +56,13 @@ set policy prefix-list6 bitraf-dn42 rule 1 prefix 'fdb1:4242:3538:2000::/60'
set policy route-map bitraf-dn42 rule 1 action permit
set policy route-map bitraf-dn42 rule 1 match ipv6 address prefix-list bitraf-dn42
set protocols bgp 4242423538 address-family ipv6-unicast redistribute connected route-map bitraf-dn42
-set protocols bgp 4242423538 neighbor 'fdb1:4242:3538:ffff:18b7:d3ec:5608:db9a' address-family ipv6-unicast capability graceful-restart
-set protocols bgp 4242423538 neighbor 'fdb1:4242:3538:ffff:18b7:d3ec:5608:db9a' address-family ipv6-unicast nexthop-self
-set protocols bgp 4242423538 neighbor 'fdb1:4242:3538:ffff:18b7:d3ec:5608:db9a' address-family ipv6-unicast route-reflector-client
-set protocols bgp 4242423538 neighbor 'fdb1:4242:3538:ffff:18b7:d3ec:5608:db9a' address-family ipv6-unicast soft-reconfiguration inbound
-set protocols bgp 4242423538 neighbor 'fdb1:4242:3538:ffff:18b7:d3ec:5608:db9a' description knot
-set protocols bgp 4242423538 neighbor 'fdb1:4242:3538:ffff:18b7:d3ec:5608:db9a' password trygvis
-set protocols bgp 4242423538 neighbor 'fdb1:4242:3538:ffff:18b7:d3ec:5608:db9a' remote-as 4242423538
+set protocols bgp 4242423538 neighbor 'fdb1:4242:3538:2f02::a' address-family ipv6-unicast capability graceful-restart
+set protocols bgp 4242423538 neighbor 'fdb1:4242:3538:2f02::a' address-family ipv6-unicast nexthop-self
+set protocols bgp 4242423538 neighbor 'fdb1:4242:3538:2f02::a' address-family ipv6-unicast route-reflector-client
+set protocols bgp 4242423538 neighbor 'fdb1:4242:3538:2f02::a' address-family ipv6-unicast soft-reconfiguration inbound
+set protocols bgp 4242423538 neighbor 'fdb1:4242:3538:2f02::a' description knot
+set protocols bgp 4242423538 neighbor 'fdb1:4242:3538:2f02::a' password trygvis
+set protocols bgp 4242423538 neighbor 'fdb1:4242:3538:2f02::a' remote-as 4242423538
set protocols bgp 4242423538 parameters graceful-restart
set protocols static route6 'fdb1:4242:3538:2008::/64' blackhole
set service dhcp-server disabled false
@@ -72,6 +73,8 @@ set service dhcp-server shared-network-name LAN subnet 192.168.11.0/24 dns-serve
set service dhcp-server shared-network-name LAN subnet 192.168.11.0/24 dns-server 8.8.8.8
set service dhcp-server shared-network-name LAN subnet 192.168.11.0/24 lease 86400
set service dhcp-server shared-network-name LAN subnet 192.168.11.0/24 start 192.168.11.100 stop 192.168.11.199
+set service dhcp-server shared-network-name LAN subnet 192.168.11.0/24 static-mapping conflatorio ip-address 192.168.11.3
+set service dhcp-server shared-network-name LAN subnet 192.168.11.0/24 static-mapping conflatorio mac-address '82:42:32:0c:71:61'
set service dhcp-server shared-network-name LAN subnet 192.168.11.0/24 static-mapping teknisk ip-address 192.168.11.2
set service dhcp-server shared-network-name LAN subnet 192.168.11.0/24 static-mapping teknisk mac-address 'f4:e2:c6:1c:f9:e3'
set service dhcp-server static-arp disable