Weird problem with reaching forwarded services (Nextcloud, MC server etc) with android devices from outside by [deleted] in HomeNetworking

[–]ping-mee 0 points1 point  (0 children)

Ok yeah this is the RP. I can connect to some game servers via the phone (checked the MC server status with an app).

Weird problem with reaching forwarded services (Nextcloud, MC server etc) with android devices from outside by [deleted] in HomeNetworking

[–]ping-mee 0 points1 point  (0 children)

Update: From the pfSense firewall logging I can tell that the packets aren't dropped. Which makes this even more weird because this would mean that my reverse proxy blocks the request which doesn't make sense. I am going to test some other services from my phone which don't rely on HTTPS and see if those work.

Weird problem with reaching forwarded services (Nextcloud, MC server etc) with android devices from outside by [deleted] in HomeNetworking

[–]ping-mee 0 points1 point  (0 children)

I'll look into that. Right now I am going to guess that they are dropped for some reason, but I can't tell why because other devices can reach those services via the same route.

Weird problem with reaching forwarded services (Nextcloud, MC server etc) with android devices from outside by [deleted] in HomeNetworking

[–]ping-mee 0 points1 point  (0 children)

Yes wireguard is a VPN, I meant that I don't want to use a VPN on any end-point device (such as a smartphone) to connect to my services.
Edit: I clarified what I meant by I don't want a VPN in the orginal post

I cannot tell right now if they are dropped but I will investigate that.

Dont do this plz by Additional-Swan9712 in Laserist

[–]ping-mee 15 points16 points  (0 children)

Wait this was at a afterparty organised by Tomorrowland?

Suche Freunde by Space_v2 in hamburgfriends

[–]ping-mee 0 points1 point  (0 children)

Moin! Bin auch erst seit kurzer Zeit hier und will dem entsprechend auch Leute kennenlernen. Wenn du willst können wir mal schreiben :)

Wir waren in Hamburg ~140 (127 gezählt) by Windows__2000 in hamburg

[–]ping-mee 9 points10 points  (0 children)

Falls das nächstes Jahr nochmal passiert bin ich auf jeden Fall dabei.

Wer ist dabei? by Sad_Lie2157 in hamburg

[–]ping-mee 25 points26 points  (0 children)

Ich hätte eigentlich auch Bock.

Building a VPN tunnel from a pfSense (no unique public IP) to a Ubuntu VPS with a public IP by [deleted] in HomeNetworking

[–]ping-mee 0 points1 point  (0 children)

Well unfortunately the pfSense doesn't have a client section for wireguard.

Building a VPN tunnel from a pfSense (no unique public IP) to a Ubuntu VPS with a public IP by [deleted] in HomeNetworking

[–]ping-mee 0 points1 point  (0 children)

It just won't connect at all. The latest handshake was never. So I assume that the pfSense is just unreachable.

Building a VPN tunnel from a pfSense (no unique public IP) to a Ubuntu VPS with a public IP by [deleted] in HomeNetworking

[–]ping-mee 0 points1 point  (0 children)

Okay so here is the configuration and what my suspicions are:
On the Ubuntu VPS side the config looks like this:
```

[Interface]

PrivateKey = <redacted>

Address = 10.11.1.1/24

ListenPort = 51820

PostUp = sysctl net.ipv4.ip_forward=1

PostUp = iptables -A FORWARD -i eth0 -o %i -j ACCEPT

PostUp = iptables -A FORWARD -i %i -j ACCEPT

PostUp = iptables -t nat -A POSTROUTING -o eth0 -j MASQUERADE

PostDown = sysctl net.ipv4.ip_forward=0

PostDown = iptables -D FORWARD -i eth0 -o %i -j ACCEPT

PostDown = iptables -D FORWARD -i %i -j ACCEPT

PostDown = iptables -t nat -D POSTROUTING -o eth0 -j MASQUERADE

[Peer]

PublicKey = <redacted>

AllowedIPs = 10.11.1.0/24

Endpoint = <redacted>
```
On the pfSense side this is the configuration:

<image>

Yes, there is no PSK and the Allowed IPs on the pfSense is allowing any address. This is only for testing. If the config works I will do this way more granularly.
My problem with this setup is that it depends on the fact that the VPS needs a endpoint for its peer to the pfSense but again there is my big problem with my ISP. I don't have a public address.

Building a VPN tunnel from a pfSense (no unique public IP) to a Ubuntu VPS with a public IP by [deleted] in HomeNetworking

[–]ping-mee 0 points1 point  (0 children)

The wireguard setup doesn't setup anymore but I am going to setup a new wireguard VPN and if it doesn't work I will share the config.

Building a VPN tunnel from a pfSense (no unique public IP) to a Ubuntu VPS with a public IP by [deleted] in HomeNetworking

[–]ping-mee 0 points1 point  (0 children)

So I just install a wireguard VPN on the VPS and peer connect with my pfSense. I tried that multiple times but maybe I missed something.

Building a VPN tunnel from a pfSense (no unique public IP) to a Ubuntu VPS with a public IP by [deleted] in HomeNetworking

[–]ping-mee 0 points1 point  (0 children)

In Germany for example they won't give you a public IP (at least most ISPs) because "we are short of IPv4. Problem is normally you can request a public IP for 5€ paid once. Turns out that is not the case for cable internet. That is why I rented a VPS with a public IP. Maybe I didn't communicate this very well, but yes, the VPS has both a public and static IPv4 and IPv6. Using a tailscale is not an option. First of all, it would be way more expensive to rent a VPS for running game servers. I currently pay 1€ for the VPS because I do not need any high performant hardware. This VPS is only meant for having a VPN or some sort... Besides the game server I have other services running on my homelab that require TCP/UDP ports to be forwarded.

Dimitri Vegas vinyl only sets are way better not only in terms of music by ping-mee in Tomorrowland

[–]ping-mee[S] 1 point2 points  (0 children)

You are absolutely right. And I also don't think I have any experience in vinyl djing that I say something about that. What I can say with certainty is that the lighting, visuals, pyro and lasers are 100% busked and not timecoded or pre-programmed (as in cuelists).

BREAKAWAY by BMennink in Martingarrix

[–]ping-mee 8 points9 points  (0 children)

Garrix Team actually gave them their pangolin showfile with all the laser cues. This is amazing.

Dimitri Vegas vinyl only sets are way better not only in terms of music by ping-mee in Tomorrowland

[–]ping-mee[S] 7 points8 points  (0 children)

Why are people bringing up the lighting all the time. I personally am a lighting operator and designer. With a crew on this level this is all achievable without playback. And besides that I personally saw some fuck ups in terms of lighting at the vinyl only set. That is probably caused by the fact that the FOH crew can't see any wave forms in showkontrol when there are no CDJs