Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- # Config of R2 in NAT lab
- # Management in EVE-NG:
- /system identity
- set name=R2-SSTP-server
- /tool romon
- set enabled=yes
- # Addresses and routes:
- /ip address
- add address=10.1.0.6/30 interface=ether1
- add address=192.168.0.1/24 interface=ether2
- /ip route
- add gateway=10.1.0.5
- # NAT
- /ip firewall nat
- add action=masquerade chain=srcnat out-interface=ether1
- add action=accept chain=dstnat dst-address=10.1.0.6 dst-port=443 protocol=tcp src-address=10.1.0.2 src-port=65432 comment="Catch SSTP"
- add action=dst-nat chain=dstnat dst-address=10.1.0.6 dst-port=443 protocol=tcp to-addresses=192.168.0.100 comment="WEB-server"
- # Enable SSTP-server
- /interface sstp-server server
- set enabled=yes
- /ppp secret
- add local-address=10.0.0.1 name=ppp1 remote-address=10.0.0.2 service=sstp
- # Disable unused services
- /ip service
- set telnet disabled=yes
- set ftp disabled=yes
- set www disabled=yes
- set ssh disabled=yes
- set api disabled=yes
- set api-ssl disabled=yes
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement