Add VPN service to monitor Fox machine #121
Reference in New Issue
Block a user
Delete Branch "fox-vpn"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
For now we keep it systemwide, but it would be nice to restrict it to a network namespace.
Fix #118
See it in action: https://jungle.bsc.es/grafana/d/ceoogwh0u9udce/tent?orgId=1&from=now-6h&to=now&timezone=browser&refresh=5s&viewPanel=panel-5
Hmm, something has caused the ICMP probes to break:
https://jungle.bsc.es/grafana/d/ceoogwh0u9udce/tent?orgId=1&from=now-24h&to=now&timezone=browser&refresh=5s
They must have been banned them via the VPN? We are passing the traffic via the route, maybe we can limit it to only include the BMC network instead of the whole subnet /16:
Solved, now we only have a route to reach fox BMC:
d27af9fc9ftod40e9197f4@@ -0,0 +15,4 @@resolv-retry infinitenobind;user nobody;group nogroupAre the comments left here intentionally?
There were in the original file provided by UPC, but it is no longer recommended to use nobody, rather we should have a openvpn user. Currently runs as root for now, so I can remove those.
Opened #127 so I don't forget.
Removed.
d40e9197f4tob5f2ed0a16b5f2ed0a16tob0875816f2