Compare commits
3 Commits
d9f5baa9d3
...
ca2b58d465
| Author | SHA1 | Date | |
|---|---|---|---|
| ca2b58d465 | |||
| 7edb177425 | |||
| 2c23be7f56 |
3
.gitignore
vendored
Normal file
3
.gitignore
vendored
Normal file
@@ -0,0 +1,3 @@
|
||||
/Dev/mysql_n8n_db/data
|
||||
/Dev/mysql_n8n_db/mysql-data
|
||||
Backup/Sophos/APS_HH.scx
|
||||
96
Backup/Sophos/APS_HH.tgb
Normal file
96
Backup/Sophos/APS_HH.tgb
Normal file
@@ -0,0 +1,96 @@
|
||||
# Do not edit this file. It is overwritten by VpnConf.
|
||||
# SIGNATURE MD5 = xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
|
||||
# Creation Date : 2025-12-22 at 13:34:35
|
||||
# Written by CyberoamServer XGS3300_RL01_SFOS 21.5.0 GA-Build171
|
||||
# Client Version :
|
||||
# CyberoamVPNClient :3.11.008
|
||||
# IKE Service :3.10.08,02.13
|
||||
|
||||
[General]
|
||||
Shared-SADB = Defined
|
||||
Retransmits = 5
|
||||
Exchange-max-time = 10
|
||||
Default-phase-1-lifetime = 46800,360:86400
|
||||
Bitblocking = 0
|
||||
Xauth-interval = 20
|
||||
DPD-interval = 30
|
||||
DPD_retrans = 7
|
||||
DPD_wait = 30
|
||||
|
||||
[Default-phase-2-lifetime]
|
||||
LIFE_TYPE = SECONDS
|
||||
LIFE_DURATION = 43200,360:86400
|
||||
|
||||
# ==================== PHASES 1 ====================
|
||||
|
||||
[Phase 1]
|
||||
185.164.230.171 = APS_HH-P1
|
||||
|
||||
[APS_HH-main-mode]
|
||||
DOI = IPSEC
|
||||
EXCHANGE_TYPE = ID_PROT
|
||||
Transforms = AES256-SHA2_256-GRP21
|
||||
|
||||
[AES256-SHA2_256-GRP21]
|
||||
ENCRYPTION_ALGORITHM = AES_CBC
|
||||
KEY_LENGTH = 256,128:256
|
||||
HASH_ALGORITHM = SHA2_256
|
||||
GROUP_DESCRIPTION = ECP521
|
||||
AUTHENTICATION_METHOD = PRE_SHARED
|
||||
Life = LIFE_MAIN_MODE
|
||||
|
||||
[APS_HH-P1]
|
||||
Phase = 1
|
||||
Family = IPV4
|
||||
Address = 185.164.230.171
|
||||
Transport = udp
|
||||
Configuration = APS_HH-main-mode
|
||||
Rconf = 1
|
||||
Authentication = "tZfNkccrTq49wyvsxLak86jF"
|
||||
Xauth = 0
|
||||
Xpopup = 1
|
||||
NATT_ENABLED = 1
|
||||
|
||||
|
||||
# ==================== PHASES 2 ====================
|
||||
|
||||
[Phase 2]
|
||||
Manual-connections = APS_HH-APS_HH1-P2
|
||||
|
||||
[APS_HH-APS_HH1-P2]
|
||||
Phase = 2
|
||||
ISAKMP-peer = APS_HH-P1
|
||||
Remote-ID = APS_HH1-remote-addr
|
||||
Configuration = APS_HH1-quick-mode
|
||||
AutoStart = 0
|
||||
USBStart = 0
|
||||
|
||||
# ==================== Ipsec ID ====================
|
||||
|
||||
[APS_HH1-remote-addr]
|
||||
ID-type = IPV4_ADDR_SUBNET
|
||||
Network = 0.0.0.0
|
||||
Netmask = 0.0.0.0
|
||||
|
||||
# ==================== TRANSFORMS ====================
|
||||
|
||||
[APS_HH1-quick-mode]
|
||||
DOI = IPSEC
|
||||
EXCHANGE_TYPE = QUICK_MODE
|
||||
Suites = APS_HH1-quick-mode-suite
|
||||
|
||||
[APS_HH1-quick-mode-suite]
|
||||
Protocols = TGBQM-ESP-AES256-SHA2_256-PFSGRP21-TUN
|
||||
|
||||
[TGBQM-ESP-AES256-SHA2_256-PFSGRP21-TUN]
|
||||
PROTOCOL_ID = IPSEC_ESP
|
||||
Transforms = TGBQM-ESP-AES256-SHA2_256-PFSGRP21-TUN-XF
|
||||
|
||||
[TGBQM-ESP-AES256-SHA2_256-PFSGRP21-TUN-XF]
|
||||
TRANSFORM_ID = AES
|
||||
KEY_LENGTH = 256,128:256
|
||||
AUTHENTICATION_ALGORITHM = HMAC_SHA2_256
|
||||
GROUP_DESCRIPTION = ECP521
|
||||
ENCAPSULATION_MODE = TUNNEL
|
||||
Life = Default-phase-2-lifetime
|
||||
|
||||
15
Backup/Sophos/README
Normal file
15
Backup/Sophos/README
Normal file
@@ -0,0 +1,15 @@
|
||||
The archive file contains IPsec remote access configuration files in .scx and .tgb formats.
|
||||
|
||||
.scx: Contains the advanced settings of Sophos Connect client in addition
|
||||
to the other settings in the configuration. We recommend that
|
||||
you use this format.
|
||||
|
||||
The advanced settings provide extra protection, such as running
|
||||
AD logon scripts after the tunnel is established and offering
|
||||
multi-factor authentication. They also allow you to split the
|
||||
tunnel and connect the tunnel automatically.
|
||||
|
||||
These settings are available if your administrator has configured them.
|
||||
|
||||
.tgb: Use this for other IPsec remote access clients. If you use this
|
||||
format for Sophos Connect clients, you won’t get the advanced settings.
|
||||
@@ -1,9 +1,9 @@
|
||||
# Docker-Compose Environment Variables for MySQL
|
||||
|
||||
# Path for MySQL data storage on the host machine
|
||||
# Az adatbázis adatai a 'Dev/mysql/data' mappába kerülnek mentésre.
|
||||
# Az adatbázis adatai a './mysql-data' mappába kerülnek mentésre a projekten belül.
|
||||
# Ezt az elérési utat tetszés szerint módosíthatod.
|
||||
MYSQL_DATA_PATH=/Tools/Docker/mysql_sw_ip/
|
||||
MYSQL_DATA_PATH=./mysql-data
|
||||
|
||||
# MySQL Credentials
|
||||
MYSQL_ROOT_PASSWORD=virgI6774
|
||||
|
||||
@@ -1,20 +0,0 @@
|
||||
CREATE TABLE clients (
|
||||
id INT AUTO_INCREMENT PRIMARY KEY,
|
||||
switch_name VARCHAR(255) NOT NULL COMMENT 'A switch hosztneve, amelyhez a kliens csatlakozik',
|
||||
mac_address VARCHAR(17) NOT NULL UNIQUE COMMENT 'A kliens MAC címe (egyedi azonosító)',
|
||||
interface VARCHAR(50) NOT NULL COMMENT 'A switch interfésze, amelyhez a kliens csatlakozik (pl. 1/1/3)',
|
||||
vlan VARCHAR(10) NOT NULL COMMENT 'A kliens VLAN azonosítója',
|
||||
ip_address VARCHAR(45) NOT NULL COMMENT 'A kliens IP címe (IPv4 vagy IPv6)',
|
||||
created_at TIMESTAMP DEFAULT CURRENT_TIMESTAMP COMMENT 'A rekord létrehozásának időpontja',
|
||||
updated_at TIMESTAMP DEFAULT CURRENT_TIMESTAMP ON UPDATE CURRENT_TIMESTAMP COMMENT 'A rekord utolsó frissítésének időpontja'
|
||||
) COMMENT='Hálózati kliensek adatainak tárolása switchenként';
|
||||
|
||||
**Magyarázat:**
|
||||
|
||||
* `id INT AUTO_INCREMENT PRIMARY KEY`: Egy automatikusan növekvő egyedi azonosító minden bejegyzéshez.
|
||||
* `switch_name VARCHAR(255) NOT NULL`: A switch neve, amihez a kliens csatlakozik.
|
||||
* `mac_address VARCHAR(17) NOT NULL UNIQUE`: A kliens MAC címe. `VARCHAR(17)` elég a `XX:XX:XX:XX:XX:XX` formátumhoz, és `UNIQUE` constraint-et is kapott, mivel ez az elsődleges egyedi azonosítója egy hálózati kliensnek.
|
||||
* `interface VARCHAR(50) NOT NULL`: Az interfész, amelyhez a kliens csatlakozik.
|
||||
* `vlan VARCHAR(10) NOT NULL`: A VLAN, amihez a kliens tartozik. `VARCHAR`-ként kezeltem, hogy rugalmasabb legyen, ha esetleg nem csak számok lennének.
|
||||
* `ip_address VARCHAR(45) NOT NULL`: A kliens IP címe.
|
||||
* `created_at` és `updated_at`: Automatikus időbélyegek a bejegyzés létrehozására és utolsó módosítására.
|
||||
@@ -3,7 +3,7 @@
|
||||
# Path for MySQL data storage on the host machine
|
||||
# Az adatbázis adatai a 'Dev/mysql/data' mappába kerülnek mentésre.
|
||||
# Ezt az elérési utat tetszés szerint módosíthatod.
|
||||
MYSQL_DATA_PATH=/data/mysql_sw_fw
|
||||
MYSQL_DATA_PATH=./mysql-data
|
||||
|
||||
# MySQL Credentials
|
||||
MYSQL_ROOT_PASSWORD=virgI6774
|
||||
|
||||
@@ -3,7 +3,7 @@
|
||||
# Path for MySQL data storage on the host machine
|
||||
# Az adatbázis adatai a 'Dev/mysql/data' mappába kerülnek mentésre.
|
||||
# Ezt az elérési utat tetszés szerint módosíthatod.
|
||||
MYSQL_DATA_PATH=/data/mysql_sw_ip
|
||||
MYSQL_DATA_PATH=./mysql-data
|
||||
|
||||
# MySQL Credentials
|
||||
MYSQL_ROOT_PASSWORD=virgI6774
|
||||
|
||||
@@ -157,3 +157,6 @@ KXBPK-6QNPK-93C3C-7KKVG-GMT44
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
tZfNkccrTq49wyvsxLak86jF
|
||||
Reference in New Issue
Block a user