【YAMAHA RTX1210】「ZOOT NATIVE 固定IPv4 1個」を契約して「VPN環境」を構築!(Configあり!)

目次

「Config」ファイル

設定時の「Config」ファイルはこちらです。

ip route default gateway tunnel 1
ipv6 prefix 1 ra-prefix@lan2::/64
ip lan1 address 192.168.1.1/24
ip lan1 proxyarp on
ipv6 lan1 address ra-prefix@lan2::feed/64
ipv6 lan1 rtadv send 1 o_flag=on
ipv6 lan1 dhcp service server
switch control use lan1 on terminal=on
description lan2 IPIP
ipv6 lan2 address auto
ipv6 lan2 secure filter in 101000 101001 101002
ipv6 lan2 secure filter out 101099 dynamic 101080 101081 101082 101083 101084 101085 101098 101099
ipv6 lan2 dhcp service client ir=on

tunnel select 1
 description tunnel transix_IPv4
 tunnel encapsulation ipip
 tunnel endpoint address 2404:8e00::feed:140
 ip tunnel nat descriptor 1
 ip tunnel tcp mss limit auto
 tunnel enable 1

ip filter 500000 restrict * * * * *
nat descriptor type 1 masquerade
nat descriptor address outer 1 XXX.XXX.XXX.XXX #割り当てられた固定IPを入力
ipsec auto refresh on
ipv6 filter 101000 pass * * icmp6 * *
ipv6 filter 101001 pass * * tcp * ident
ipv6 filter 101002 pass * * udp * 546
ipv6 filter 101099 pass * * * * *
ipv6 filter dynamic 101080 * * ftp
ipv6 filter dynamic 101081 * * domain
ipv6 filter dynamic 101082 * * www
ipv6 filter dynamic 101083 * * smtp
ipv6 filter dynamic 101084 * * pop3
ipv6 filter dynamic 101085 * * submission
ipv6 filter dynamic 101098 * * tcp
ipv6 filter dynamic 101099 * * udp
tftp host 192.168.1.2
dhcp server rfc2131 compliant except remain-silent
dns host lan1
dns service recursive
dns service fallback on
dns server dhcp lan2
dns server select 500000 dhcp lan2 any .
dns private address spoof on

l2tp service on
dashboard accumulate traffic on
dashboard accumulate nat on

ipv6 lan1 prefix change log on
lan linkup send-wait-time lan2 5
schedule at 2 startup * lua update.lua

アップデートサーバに通知をする「lua」ファイルの作成方法は以下の記事を参照してください。

よかったらシェアしてね!
  • URLをコピーしました!
  • URLをコピーしました!
目次