ΠΠ°ΡΡΡΠΎΠΉΠΊΠ° Π΄ΠΈΠ½Π°ΠΌΠΈΡΠ΅ΡΠΊΠΎΠ³ΠΎ ΠΊΠΎΠ½ΡΠΈΠ³ΡΡΠΈΡΠΎΠ²Π°Π½ΠΈΡ Ρ ΠΎΡΡΠΎΠ² (DHCP)
Touch /usr/local/etc/mpd/mpd.links. Touch /usr/local/etc/mpd/mpd.conf. Π‘ΠΎΠ·Π΄Π°Π΅ΠΌ Π»ΠΎΠ³-ΡΠ°ΠΉΠ»Ρ: Π£ΡΡΠ°Π½Π°Π²Π»ΠΈΠ²Π°Π΅ΠΌ DNS. Set link yes acfcomp protocomp. Touch /var/log/dhcp/dhcpd.log. Set bundle enable compression. Set link keep-alive 60 180. Set bundle disable multilink. Set iface disable on-demand. Touch /var/db/dhcpd.leases. Set pptp self 192.168.99.2. Set pptp disable originate. Set iface enable… Π§ΠΈΡΠ°ΡΡ Π΅ΡΡ >
ΠΠ°ΡΡΡΠΎΠΉΠΊΠ° Π΄ΠΈΠ½Π°ΠΌΠΈΡΠ΅ΡΠΊΠΎΠ³ΠΎ ΠΊΠΎΠ½ΡΠΈΠ³ΡΡΠΈΡΠΎΠ²Π°Π½ΠΈΡ Ρ ΠΎΡΡΠΎΠ² (DHCP) (ΡΠ΅ΡΠ΅ΡΠ°Ρ, ΠΊΡΡΡΠΎΠ²Π°Ρ, Π΄ΠΈΠΏΠ»ΠΎΠΌ, ΠΊΠΎΠ½ΡΡΠΎΠ»ΡΠ½Π°Ρ)
Π£ΡΡΠ°Π½Π°Π²Π»ΠΈΠ²Π°Π΅ΠΌ ΠΏΠ°ΠΊΠ΅Ρ DHCP ΡΠ΅ΡΠ²Π΅ΡΠ°:
server-nat-int# pkg_add ftp://ftp.freebsd.org/pub/FreeBSD/ports/i386/packages-6.4-release/All/isc-dhcp3-server-3.0.52.tbz.
Π‘ΠΎΠ·Π΄Π°Π΅ΠΌ ΠΊΠΎΠ½ΡΠΈΠ³ΡΡΠ°ΡΠΈΠΎΠ½Π½ΡΠΉ ΡΠ°ΠΉΠ»:
# cd /usr/local/etc.
# touch dhcpd.conf.
# chmod 644 dhcpd.conf.
ΠΠ½ΠΎΡΠΈΠΌ Π² ΠΊΠΎΠ½ΡΠΈΠ³ΡΡΠ°ΡΠΈΠΎΠ½Π½ΡΠΉ ΡΠ°ΠΉΠ» dhcpd. conf ΡΡΡΠΎΠΊΠΈ ΡΠ»Π΅Π΄ΡΡΡΠ΅Π³ΠΎ ΡΠΎΠ΄Π΅ΡΠΆΠ°Π½ΠΈΡ:
default-lease-time 600;
max-lease-time 7200;
ddns-update-style none;
log-facility local7;
subnet 192.168.99.0 netmask 255.255.255.0 {.
}.
subnet 10.1.1.0 netmask 255.255.255.0 {.
option domain-name «test.lab.local» ;
option routers 10.1.1.1;
range 10.1.1.10 10.1.1.20;
}.
ΠΠ½ΠΎΡΠΈΠΌ ΠΈΠ·ΠΌΠ΅Π½Π΅Π½ΠΈΡ Π² /etc/rc.conf:
dhcpd_enable="YES".
dhcpd_flags="-q".
dhcpd_ifaces="le1″.
Π‘ΠΎΠ·Π΄Π°Π΅ΠΌ Π»ΠΎΠ³-ΡΠ°ΠΉΠ»Ρ:
# touch /var/db/dhcpd.leases.
# mkdir /var/log/dhcp/.
# touch /var/log/dhcp/dhcpd.log.
ΠΠ½ΠΎΡΠΈΠΌ ΠΈΠ·ΠΌΠ΅Π½Π΅Π½ΠΈΡ Π² /etc/syslog.conf:
!dhcpd.
*.* /var/log/dhcp/dhcpd.log.
ΠΠ°ΡΡΡΠΎΠΉΠΊΠ° Vpn-ΡΠ΅ΡΠ²Π΅ΡΠ°
Π£ΡΡΠ°Π½Π°Π²Π»ΠΈΠ²Π°Π΅ΠΌ ΠΏΠ°ΠΊΠ΅Ρ MPD.
pkg_add.
Π Π΄ΠΈΡΠ΅ΠΊΡΠΎΡΠΈΠΈ /usr/local/etc/mpd ΡΠΎΠ·Π΄Π°Π΅ΠΌ ΡΡΠΈ ΠΊΠΎΠ½ΡΠΈΠ³ΡΡΠ°ΡΠΈΠΎΠ½Π½ΡΡ ΡΠ°ΠΉΠ»Π°, ΠΎΠΏΠΈΡΡΠ²Π°ΡΡΠΈΡ ΡΠ°Π±ΠΎΡΡ MPD:
mpd.conf — ΡΠ°ΠΉΠ» ΠΎΠΏΠΈΡΡΠ²Π°ΡΡΠΈΠΉ ΠΊΠΎΠ½ΡΠΈΠ³ΡΡΠ°ΡΠΈΡ ΠΈΠ½ΡΠ΅ΡΡΠ΅ΠΉΡΠΎΠ².
mpd.links — ΡΠ°ΠΉΠ», ΠΎΠΏΠΈΡΡΠ²Π°ΡΡΠΈΠΉ ΠΊΠΎΠ½ΡΠΈΠ³ΡΡΠ°ΡΠΈΡ ΡΠΎΠ΅Π΄ΠΈΠ½Π΅Π½ΠΈΠΉ.
mpd.secret — ΡΠ°ΠΉΠ» Ρ ΠΏΠ°ΡΠΎΠ»ΡΠΌΠΈ ΠΏΠΎΠ»ΡΠ·ΠΎΠ²Π°ΡΠ΅Π»Π΅ΠΉ.
touch /usr/local/etc/mpd/mpd.conf.
touch /usr/local/etc/mpd/mpd.links.
touch /usr/local/etc/mpd/mpd.secret.
Π‘ΠΎΠ΄Π΅ΡΠΆΠ°Π½ΠΈΠ΅ ΡΠ°ΠΉΠ»Π° mdp. conf:
default:
load pptp0.
load pptp1.
load pptp2.
load pptp3.
load pptp4.
load pptp5.
pptp0:
#ΡΠ°ΠΊ ΡΠΎΠ·Π΄Π°Π΅ΡΡΡ Π½ΠΎΠ²ΡΠΉ ΠΈΠ½ΡΠ΅ΡΡΠ΅ΠΉΡ, Π²ΠΎΡΠΎΡΠΎΠΉ ΠΏΠ°ΡΠ°ΠΌΠ΅ΡΡ — Π½Π°Π·Π²Π°Π½ΠΈΠ΅ ΡΠΎΠ΅Π΄ΠΈΠ½Π΅Π½ΠΈΡ, ΠΊΠΎΡΠΎΡΡΠΉ ΡΡΠΎΡ ΠΈΠ½ΡΠ΅ΡΡΠ΅ΠΉΡ Π±ΡΠ΄Π΅Ρ ΠΈΡΠΏΠΎΠ»ΡΠ·ΠΎΠ²Π°ΡΡ (ΠΈΠ· ΡΠ°ΠΉΠ»Π°.
mpd.links).
newi ng0 pptp0 pptp0.
#ΠΠ°Π΄Π°Π΅ΡΡΡ Π»ΠΎΠΊΠ°Π»ΡΠ½ΡΠΉ ΠΈ ΡΠ΄Π°Π»Π΅Π½Π½ΡΠΉ ip Π°Π΄ΡΠ΅ΡΠ°.
set ipcp ranges 10.1.1.100/32 10.1.1.200/32.
#ΠΠ°Π³ΡΡΠΆΠ°ΡΡΡΡ ΠΏΠ°ΡΠ΅ΠΌΡΡΡ, ΠΎΠ΄ΠΈΠ½Π°ΠΊΠΎΠ²ΡΠ΅ Π΄Π»Ρ Π²ΡΠ΅Ρ ΠΈΠ½ΡΠ΅ΡΡΠ΅ΠΉΡΠΎΠ².
load pptp_standart.
pptp1:
newi ng1 pptp1 pptp1.
set ipcp ranges 10.1.1.100/32 10.1.1.200/32.
load pptp_standart.
pptp2:
newi ng2 pptp2 pptp2.
set ipcp ranges 10.1.1.100/32 10.1.1.200/32.
load pptp_standart.
pptp3:
newi ng3 pptp3 pptp3.
set ipcp ranges 10.1.1.100/32 10.1.1.200/32.
load pptp_standart.
pptp4:
newi ng4 pptp4 pptp4.
set ipcp ranges 10.1.1.100/32 10.1.1.200/32.
load pptp_standart.
pptp5:
newi ng5 pptp5 pptp5.
set ipcp ranges 10.1.1.100/32 10.1.1.200/32.
load pptp_standart.
pptp6:
newi ng6 pptp6 pptp6.
set ipcp ranges 10.1.1.100/32 10.1.1.200/32.
load pptp_standart.
pptp_standart:
set iface disable on-demand.
set bundle disable multilink.
set link yes acfcomp protocomp.
#Π’ΡΠ΅Π±ΡΠ΅ΠΌ chap Π°Π²ΡΠΎΡΠΈΠ·Π°ΡΠΈΠΈ.
set link no pap chap.
set link enable chap.
set link keep-alive 60 180.
set ipcp yes vjcomp.
#Π£ΡΡΠ°Π½Π°Π²Π»ΠΈΠ²Π°Π΅ΠΌ DNS.
set ipcp dns 10.1.1.1.
#ΠΠΊΠ»ΡΡΠ°Π΅ΠΌ proxy-arp, ΡΡΠΎΠ±Ρ ΠΊΠΎΠΌΠΏΡΡΡΠ΅Ρ «Π²ΠΈΠ΄Π΅Π»» Π±Π΅Π· ΠΌΠ°ΡΡΡΡΡΠΈΠ·Π°ΡΠΈΠΈ ΠΊΠΎΡΠΏΠΎΡΠ°ΡΠΈΠ²Π½ΡΡ ΡΠ΅ΡΡ (ΠΏΠΎ ΠΏΡΠΎΡΠΎΠΊΠΎΠ»Ρ arp).
set iface enable proxy-arp.
#ΠΠΊΠ»ΡΡΠ°Π΅ΠΌ ΠΊΠΎΠΌΠΏΡΠ΅ΡΡΠΈΡ Π΄Π°Π½Π½ΡΡ .
set bundle enable compression.
#ΠΠΊΠ»ΡΡΠ°Π΅ΠΌ ΠΊΠΎΠΌΠΏΡΠ΅ΡΡΠΈΡ Π΄Π°Π½Π½ΡΡ , ΡΠΎΠ²ΡΠ΅ΡΡΠΈΠΌΡΡ Ρ Microsoft-ΠΊΠ»ΠΈΠ΅Π½ΡΠ°ΠΌΠΈ.
set ccp yes mppc.
#ΠΠΊΠ»ΡΡΠ°Π΅ΠΌ ΡΠΈΡΡΠΎΠ²Π°Π½ΠΈΠ΅, ΡΠΎΠ²ΠΌΠ΅ΡΡΠΈΠΌΠΎΠ΅ Ρ Microsoft-ΠΊΠ»ΠΈΠ΅Π½ΡΠ°ΠΌΠΈ.
set ccp yes mpp-e40.
set ccp yes mpp-e128.
set ccp yes mpp-stateless.
set bundle yes crypt-reqd.
#ΠΠ°Π΄Π°Π΅ΠΌ Π°Π΄ΡΠ΅Ρ Π΄Π»Ρ Π²Ρ ΠΎΠ΄ΡΡΠΈΡ ΡΠΎΠ΅Π΄ΠΈΠ½Π΅Π½ΠΈΠΉ.
set pptp self 192.168.99.2.
#Π Π°Π·ΡΠ΅ΡΠ°Π΅ΠΌ Π²Ρ ΠΎΠ΄ΡΡΠΈΠ΅ ΡΠΎΠ΅Π΄ΠΈΠ½Π΅Π½ΠΈΡ.
set pptp enable incoming.
set pptp disable originate.
Π‘ΠΎΠ΄Π΅ΡΠΆΠ°Π½ΠΈΠ΅ ΡΠ°ΠΉΠ»Π° mpd. links:
pptp0:
set link type pptp.
pptp1:
set link type pptp.
pptp2:
set link type pptp.
pptp3:
set link type pptp.
pptp4:
set link type pptp.
pptp5:
set link type pptp.
pptp6:
set link type pptp.
Π‘ΠΎΠ΄Π΅ΡΠΆΠ°Π½ΠΈΠ΅ ΡΠ°ΠΉΠ»Π° mpd. secret:
user1 pass1 10.1.1.103.
user2 pass2 *.
user3 pass3 10.1.1.172.
Π ΠΊΠΎΠ½ΡΠΈΠ³ΡΡΠ°ΡΠΈΠΎΠ½Π½ΡΠΉ ΡΠ°ΠΉΠ» /etc/rc.conf Π²Π½ΠΎΡΠΈΠΌ ΡΡΡΠΎΠΊΠΈ:
mpd_enable="YES" .
mpd_flags="-b" .