summaryrefslogtreecommitdiff
path: root/docs/quick-start.rst
diff options
context:
space:
mode:
Diffstat (limited to 'docs/quick-start.rst')
-rw-r--r--docs/quick-start.rst16
1 files changed, 10 insertions, 6 deletions
diff --git a/docs/quick-start.rst b/docs/quick-start.rst
index b1295790..253f093e 100644
--- a/docs/quick-start.rst
+++ b/docs/quick-start.rst
@@ -34,8 +34,8 @@ Once your configuration works as expected you can save it permanently.
save
-Network Interface Configuration
-###############################
+Interface Configuration
+#######################
* Your outside/WAN interface will be `eth0`, it receives it's interface address
be means of DHCP.
@@ -52,7 +52,8 @@ commands:
set interfaces ethernet eth1 address '192.168.0.1/24'
set interfaces ethernet eth1 description 'INSIDE'
-Enable Management via SSH
+
+Enable SSH Management SSH
#########################
After switching to :ref:`quick-start-configuration-mode` issue the following
@@ -65,8 +66,8 @@ on specific addresses only.
set service ssh port '22'
-Configure DHCP and DNS server
-#############################
+Configure DHCP/DNS Servers
+##########################
* Provide DHCP service on your internal/LAN network where VyOS will act
as the default gateway and DNS server.
@@ -90,6 +91,7 @@ Configure DHCP and DNS server
set service dns forwarding listen-address '192.168.0.1'
set service dns forwarding allow-from '192.168.0.0/24'
+
NAT
###
@@ -101,6 +103,7 @@ NAT
set nat source rule 100 source address '192.168.0.0/24'
set nat source rule 100 translation address masquerade
+
Firewall
########
@@ -163,10 +166,10 @@ Commit changes, save the configuration, and exit configuration mode:
vyos@vyos# exit
vyos@vyos$
+
QoS
###
-
One common use of :ref:`qos` is to limit bandwidth for an interface. In
the example below we limit bandwidth for our internal/LAN connection to 200
Mbit/s download and our outside/WAN connection to 50 Mbit/s upload:
@@ -191,6 +194,7 @@ interface-level traffic-policy directive:
set interfaces ethernet eth0 traffic-policy out 'WAN-OUT'
set interfaces ethernet eth1 traffic-policy out 'LAN-OUT'
+
Security Hardening
##################