Shovel
Can't get enough of FH
- Joined
- Dec 22, 2003
- Messages
- 1,350
Ello all,
It's nearly time for me to go back to Manchester, meaning that the security obligations for the Ward family network will again be left to... no one.
This time around I'd like to do something clever. I can SSH to the machine (running Smoothwall Linux) from inside the network, and there's also a browser based configuration/patching interface for basic settings and config. I would like to have access to this from my system in Manchester.
In Manc I'm also behind an NAT (outside of my control, it's run by the service provider), but apart from that I have completely free reign of my system.
Router wise, I can do anything you like, so long as it wont hit routing performance when I'm not using, and that you draw me some pictures ().
I can set up SSH and a VPN from what's already on Smoothwall. I don't, however, know what my external IP is in Manc, so I need some way of having "open access" for a few hours while I travel, and then be able to lock it down as soon as get back to the machine I'll be using.
I've never used a VPN before, but this sounds like this is what I want, and will give me access as if I were a client on the network itself, therefore local SSH acess and the browser interface will be accessible as if I were sitting right here. Please correct me if that's horribly wrong.
So please, if you can offer guidence on how to set it up (so I can get to it first, then how to lock it down). I can also configure a Dynamic DNS type service for the external IP of the router, which I'm guessing will be needed for me to actually get to it over a longer period, since the machine and cable modem are restarted every night.
So in summary that's: Personal, secure remote access to the browser interface and SSH, possibly using the VPN and a Dynamic DNS name.
Challlengers, you have 3 days - time starts....... now!
Thank you
Ben/Shovel
It's nearly time for me to go back to Manchester, meaning that the security obligations for the Ward family network will again be left to... no one.
This time around I'd like to do something clever. I can SSH to the machine (running Smoothwall Linux) from inside the network, and there's also a browser based configuration/patching interface for basic settings and config. I would like to have access to this from my system in Manchester.
In Manc I'm also behind an NAT (outside of my control, it's run by the service provider), but apart from that I have completely free reign of my system.
Router wise, I can do anything you like, so long as it wont hit routing performance when I'm not using, and that you draw me some pictures ().
I can set up SSH and a VPN from what's already on Smoothwall. I don't, however, know what my external IP is in Manc, so I need some way of having "open access" for a few hours while I travel, and then be able to lock it down as soon as get back to the machine I'll be using.
I've never used a VPN before, but this sounds like this is what I want, and will give me access as if I were a client on the network itself, therefore local SSH acess and the browser interface will be accessible as if I were sitting right here. Please correct me if that's horribly wrong.
So please, if you can offer guidence on how to set it up (so I can get to it first, then how to lock it down). I can also configure a Dynamic DNS type service for the external IP of the router, which I'm guessing will be needed for me to actually get to it over a longer period, since the machine and cable modem are restarted every night.
So in summary that's: Personal, secure remote access to the browser interface and SSH, possibly using the VPN and a Dynamic DNS name.
Challlengers, you have 3 days - time starts....... now!
Thank you
Ben/Shovel