From b61205ca9d5954385e5de5dbfa27446974c0ac7d Mon Sep 17 00:00:00 2001 From: Christian Poessinger Date: Sun, 29 Dec 2019 09:08:49 +0100 Subject: quick-start: rework headlines --- docs/quick-start.rst | 16 ++++++++++------ 1 file changed, 10 insertions(+), 6 deletions(-) (limited to 'docs') diff --git a/docs/quick-start.rst b/docs/quick-start.rst index b1295790..253f093e 100644 --- a/docs/quick-start.rst +++ b/docs/quick-start.rst @@ -34,8 +34,8 @@ Once your configuration works as expected you can save it permanently. save -Network Interface Configuration -############################### +Interface Configuration +####################### * Your outside/WAN interface will be `eth0`, it receives it's interface address be means of DHCP. @@ -52,7 +52,8 @@ commands: set interfaces ethernet eth1 address '192.168.0.1/24' set interfaces ethernet eth1 description 'INSIDE' -Enable Management via SSH + +Enable SSH Management SSH ######################### After switching to :ref:`quick-start-configuration-mode` issue the following @@ -65,8 +66,8 @@ on specific addresses only. set service ssh port '22' -Configure DHCP and DNS server -############################# +Configure DHCP/DNS Servers +########################## * Provide DHCP service on your internal/LAN network where VyOS will act as the default gateway and DNS server. @@ -90,6 +91,7 @@ Configure DHCP and DNS server set service dns forwarding listen-address '192.168.0.1' set service dns forwarding allow-from '192.168.0.0/24' + NAT ### @@ -101,6 +103,7 @@ NAT set nat source rule 100 source address '192.168.0.0/24' set nat source rule 100 translation address masquerade + Firewall ######## @@ -163,10 +166,10 @@ Commit changes, save the configuration, and exit configuration mode: vyos@vyos# exit vyos@vyos$ + QoS ### - One common use of :ref:`qos` is to limit bandwidth for an interface. In the example below we limit bandwidth for our internal/LAN connection to 200 Mbit/s download and our outside/WAN connection to 50 Mbit/s upload: @@ -191,6 +194,7 @@ interface-level traffic-policy directive: set interfaces ethernet eth0 traffic-policy out 'WAN-OUT' set interfaces ethernet eth1 traffic-policy out 'LAN-OUT' + Security Hardening ################## -- cgit v1.2.3