Compare commits

...

3 Commits

Author SHA1 Message Date
ca2b58d465 . 2025-12-22 14:53:29 +01:00
7edb177425 . 2025-12-22 12:35:31 +01:00
2c23be7f56 pär modositäs 2025-12-22 12:28:41 +01:00
8 changed files with 121 additions and 24 deletions

3
.gitignore vendored Normal file
View File

@@ -0,0 +1,3 @@
/Dev/mysql_n8n_db/data
/Dev/mysql_n8n_db/mysql-data
Backup/Sophos/APS_HH.scx

96
Backup/Sophos/APS_HH.tgb Normal file
View File

@@ -0,0 +1,96 @@
# Do not edit this file. It is overwritten by VpnConf.
# SIGNATURE MD5 = xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
# Creation Date : 2025-12-22 at 13:34:35
# Written by CyberoamServer XGS3300_RL01_SFOS 21.5.0 GA-Build171
# Client Version :
# CyberoamVPNClient :3.11.008
# IKE Service :3.10.08,02.13
[General]
Shared-SADB = Defined
Retransmits = 5
Exchange-max-time = 10
Default-phase-1-lifetime = 46800,360:86400
Bitblocking = 0
Xauth-interval = 20
DPD-interval = 30
DPD_retrans = 7
DPD_wait = 30
[Default-phase-2-lifetime]
LIFE_TYPE = SECONDS
LIFE_DURATION = 43200,360:86400
# ==================== PHASES 1 ====================
[Phase 1]
185.164.230.171 = APS_HH-P1
[APS_HH-main-mode]
DOI = IPSEC
EXCHANGE_TYPE = ID_PROT
Transforms = AES256-SHA2_256-GRP21
[AES256-SHA2_256-GRP21]
ENCRYPTION_ALGORITHM = AES_CBC
KEY_LENGTH = 256,128:256
HASH_ALGORITHM = SHA2_256
GROUP_DESCRIPTION = ECP521
AUTHENTICATION_METHOD = PRE_SHARED
Life = LIFE_MAIN_MODE
[APS_HH-P1]
Phase = 1
Family = IPV4
Address = 185.164.230.171
Transport = udp
Configuration = APS_HH-main-mode
Rconf = 1
Authentication = "tZfNkccrTq49wyvsxLak86jF"
Xauth = 0
Xpopup = 1
NATT_ENABLED = 1
# ==================== PHASES 2 ====================
[Phase 2]
Manual-connections = APS_HH-APS_HH1-P2
[APS_HH-APS_HH1-P2]
Phase = 2
ISAKMP-peer = APS_HH-P1
Remote-ID = APS_HH1-remote-addr
Configuration = APS_HH1-quick-mode
AutoStart = 0
USBStart = 0
# ==================== Ipsec ID ====================
[APS_HH1-remote-addr]
ID-type = IPV4_ADDR_SUBNET
Network = 0.0.0.0
Netmask = 0.0.0.0
# ==================== TRANSFORMS ====================
[APS_HH1-quick-mode]
DOI = IPSEC
EXCHANGE_TYPE = QUICK_MODE
Suites = APS_HH1-quick-mode-suite
[APS_HH1-quick-mode-suite]
Protocols = TGBQM-ESP-AES256-SHA2_256-PFSGRP21-TUN
[TGBQM-ESP-AES256-SHA2_256-PFSGRP21-TUN]
PROTOCOL_ID = IPSEC_ESP
Transforms = TGBQM-ESP-AES256-SHA2_256-PFSGRP21-TUN-XF
[TGBQM-ESP-AES256-SHA2_256-PFSGRP21-TUN-XF]
TRANSFORM_ID = AES
KEY_LENGTH = 256,128:256
AUTHENTICATION_ALGORITHM = HMAC_SHA2_256
GROUP_DESCRIPTION = ECP521
ENCAPSULATION_MODE = TUNNEL
Life = Default-phase-2-lifetime

15
Backup/Sophos/README Normal file
View File

@@ -0,0 +1,15 @@
The archive file contains IPsec remote access configuration files in .scx and .tgb formats.
.scx: Contains the advanced settings of Sophos Connect client in addition
to the other settings in the configuration. We recommend that
you use this format.
The advanced settings provide extra protection, such as running
AD logon scripts after the tunnel is established and offering
multi-factor authentication. They also allow you to split the
tunnel and connect the tunnel automatically.
These settings are available if your administrator has configured them. 
.tgb: Use this for other IPsec remote access clients. If you use this
format for Sophos  Connect clients, you wont get the advanced settings.

View File

@@ -1,9 +1,9 @@
# Docker-Compose Environment Variables for MySQL
# Path for MySQL data storage on the host machine
# Az adatbázis adatai a 'Dev/mysql/data' mappába kerülnek mentésre.
# Az adatbázis adatai a './mysql-data' mappába kerülnek mentésre a projekten belül.
# Ezt az elérési utat tetszés szerint módosíthatod.
MYSQL_DATA_PATH=/Tools/Docker/mysql_sw_ip/
MYSQL_DATA_PATH=./mysql-data
# MySQL Credentials
MYSQL_ROOT_PASSWORD=virgI6774

View File

@@ -1,20 +0,0 @@
CREATE TABLE clients (
id INT AUTO_INCREMENT PRIMARY KEY,
switch_name VARCHAR(255) NOT NULL COMMENT 'A switch hosztneve, amelyhez a kliens csatlakozik',
mac_address VARCHAR(17) NOT NULL UNIQUE COMMENT 'A kliens MAC címe (egyedi azonosító)',
interface VARCHAR(50) NOT NULL COMMENT 'A switch interfésze, amelyhez a kliens csatlakozik (pl. 1/1/3)',
vlan VARCHAR(10) NOT NULL COMMENT 'A kliens VLAN azonosítója',
ip_address VARCHAR(45) NOT NULL COMMENT 'A kliens IP címe (IPv4 vagy IPv6)',
created_at TIMESTAMP DEFAULT CURRENT_TIMESTAMP COMMENT 'A rekord létrehozásának időpontja',
updated_at TIMESTAMP DEFAULT CURRENT_TIMESTAMP ON UPDATE CURRENT_TIMESTAMP COMMENT 'A rekord utolsó frissítésének időpontja'
) COMMENT='Hálózati kliensek adatainak tárolása switchenként';
**Magyarázat:**
* `id INT AUTO_INCREMENT PRIMARY KEY`: Egy automatikusan növekvő egyedi azonosító minden bejegyzéshez.
* `switch_name VARCHAR(255) NOT NULL`: A switch neve, amihez a kliens csatlakozik.
* `mac_address VARCHAR(17) NOT NULL UNIQUE`: A kliens MAC címe. `VARCHAR(17)` elég a `XX:XX:XX:XX:XX:XX` formátumhoz, és `UNIQUE` constraint-et is kapott, mivel ez az elsődleges egyedi azonosítója egy hálózati kliensnek.
* `interface VARCHAR(50) NOT NULL`: Az interfész, amelyhez a kliens csatlakozik.
* `vlan VARCHAR(10) NOT NULL`: A VLAN, amihez a kliens tartozik. `VARCHAR`-ként kezeltem, hogy rugalmasabb legyen, ha esetleg nem csak számok lennének.
* `ip_address VARCHAR(45) NOT NULL`: A kliens IP címe.
* `created_at` és `updated_at`: Automatikus időbélyegek a bejegyzés létrehozására és utolsó módosítására.

View File

@@ -3,7 +3,7 @@
# Path for MySQL data storage on the host machine
# Az adatbázis adatai a 'Dev/mysql/data' mappába kerülnek mentésre.
# Ezt az elérési utat tetszés szerint módosíthatod.
MYSQL_DATA_PATH=/data/mysql_sw_fw
MYSQL_DATA_PATH=./mysql-data
# MySQL Credentials
MYSQL_ROOT_PASSWORD=virgI6774

View File

@@ -3,7 +3,7 @@
# Path for MySQL data storage on the host machine
# Az adatbázis adatai a 'Dev/mysql/data' mappába kerülnek mentésre.
# Ezt az elérési utat tetszés szerint módosíthatod.
MYSQL_DATA_PATH=/data/mysql_sw_ip
MYSQL_DATA_PATH=./mysql-data
# MySQL Credentials
MYSQL_ROOT_PASSWORD=virgI6774

View File

@@ -157,3 +157,6 @@ KXBPK-6QNPK-93C3C-7KKVG-GMT44
tZfNkccrTq49wyvsxLak86jF