VYOS - nicolas-tullio/Tech-Journal GitHub Wiki
Remember: configure, commit, save, and exit
Cabling
- Network adapter 1 - WAN
- Network adapter 2 - DMZ
- Network adapter 3 - LAN
Hostname
> configure
> set system host-name fw01-nicolas
> commit
> save
> exit
Interfaces
> configure
> set interfaces ethernet eth# description SEC350-(WAN, DMZ, LAN)
> set interfaces ethernet eth# address IPADDRESS/MASK
> commit
> save
> exit
Gateway and DNS
> set protocols static route 0.0.0.0/0 next-hop 10.0.17.2
> set system name-server 10.0.17.2
> commit
> save
> exit
NAT
> configure
> set nat source rule 10 description "NAT FROM DMZ to WAN"
> set nat source rule 10 outbound-interface eth0
> set nat source rule 10 source address 172.16.50.0/29
> set nat source rule 10 translation address masquerade
> commit
> save
> exit
DNS Forwarding
> set service dns forwarding listen-address 172.16.50.2
> set service dns forwarding allow-from 172.16.50.0/29
> set service dns forwarding system
> commit
> save
> exit