Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- s6-rc: info: service s6rc-oneshot-runner: starting
- s6-rc: info: service s6rc-oneshot-runner successfully started
- s6-rc: info: service fix-attrs: starting
- s6-rc: info: service fix-attrs successfully started
- s6-rc: info: service legacy-cont-init: starting
- cont-init: info: running /etc/cont-init.d/00-env-file-init
- cont-init: info: /etc/cont-init.d/00-env-file-init exited 0
- cont-init: info: running /etc/cont-init.d/00-start-container
- ----------------------------------------------------------------------
- ENVIRONMENT
- ----------------------------------------------------------------------
- 0
- 0
- 2
- TZ=America/Los_Angeles
- WEBUI_PORTS=8080/tcp,8080/udp
- VPN_ENABLED=true
- VPN_LAN_NETWORK=10.0.0.0/24
- VPN_CONF=US-CA-263
- VPN_ADDITIONAL_PORTS=
- PRIVOXY_ENABLED=false
- ----------------------------------------------------------------------
- Executing usermod...
- usermod: no changes
- Applying permissions to /config
- cont-init: info: /etc/cont-init.d/00-start-container exited 0
- cont-init: info: running /etc/cont-init.d/01-configure-app
- cont-init: info: /etc/cont-init.d/01-configure-app exited 0
- cont-init: info: running /etc/cont-init.d/02-setup-wg
- [INFO] Docker network type is not set to "host".
- [INFO] "sysctl net.ipv4.conf.all.src_valid_mark=1" is set.
- [INFO] Configuration file "/config/wireguard/US-CA-263.conf" was found.
- [INFO] WireGuard is down. Continuing...
- [INFO] Starting WireGuard...
- [#] ip link add US-CA-263 type wireguard
- [#] wg setconf US-CA-263 /dev/fd/63
- [#] ip -4 address add 10.2.0.2/32 dev US-CA-263
- [#] ip link set mtu 1420 up dev US-CA-263
- [#] resolvconf -a US-CA-263 -m 0 -x
- [#] wg set US-CA-263 fwmark 51820
- [#] ip -4 route add 0.0.0.0/0 dev US-CA-263 table 51820
- [#] ip -4 rule add not fwmark 51820 table 51820
- [#] ip -4 rule add table main suppress_prefixlength 0
- skipping setting net.ipv4.conf.all.src_valid_mark
- [#] echo skipping setting net.ipv4.conf.all.src_valid_mark
- [#] iptables-restore -n
- [INFO] WireGuard is started.
- [INFO] WebUI ports are "8080/tcp,8080/udp".
- [INFO] Additional ports are "".
- [INFO] WireGuard remote is "IP:51820".
- [INFO] Docker network interface is "eth0".
- [INFO] Docker network IP is "172.25.0.10".
- [INFO] Docker network CIDR is "172.25.0.0/16".
- [INFO] Adding "10.0.0.0/24" as route via interface "eth0".
- [INFO] ip route overview:
- default via 172.25.0.1 dev eth0
- 10.0.0.0/24 via 172.25.0.1 dev eth0
- 172.25.0.0/16 dev eth0 proto kernel scope link src 172.25.0.10
- [INFO] Configuring iptables...
- [INFO] ipv6 is disabled, we will not set ip6tables rules.
- [INFO] iptables overview:
- -P INPUT DROP
- -P FORWARD DROP
- -P OUTPUT DROP
- -A INPUT -i US-CA-263 -p udp -m udp --dport 8080 -j DROP
- -A INPUT -i US-CA-263 -p tcp -m tcp --dport 8080 -j DROP
- -A INPUT -i US-CA-263 -p udp -j ACCEPT
- -A INPUT -i US-CA-263 -p tcp -j ACCEPT
- -A INPUT -s 172.25.0.0/16 -d 172.25.0.0/16 -j ACCEPT
- -A INPUT -i eth0 -p udp -m udp --sport 51820 -j ACCEPT
- -A INPUT -p icmp -m icmp --icmp-type 0 -j ACCEPT
- -A INPUT -i lo -j ACCEPT
- -A INPUT -i eth0 -p tcp -m tcp --dport 8080 -j ACCEPT
- -A INPUT -i eth0 -p udp -m udp --dport 8080 -j ACCEPT
- -A OUTPUT -o US-CA-263 -p udp -m udp --sport 8080 -j DROP
- -A OUTPUT -o US-CA-263 -p tcp -m tcp --sport 8080 -j DROP
- -A OUTPUT -o US-CA-263 -p udp -j ACCEPT
- -A OUTPUT -o US-CA-263 -p tcp -j ACCEPT
- -A OUTPUT -s 172.25.0.0/16 -d 172.25.0.0/16 -j ACCEPT
- -A OUTPUT -o eth0 -p udp -m udp --dport 51820 -j ACCEPT
- -A OUTPUT -p icmp -m icmp --icmp-type 8 -j ACCEPT
- -A OUTPUT -o lo -j ACCEPT
- -A OUTPUT -o eth0 -p tcp -m tcp --sport 8080 -j ACCEPT
- -A OUTPUT -o eth0 -p udp -m udp --sport 8080 -j ACCEPT
- cont-init: info: /etc/cont-init.d/02-setup-wg exited 0
- cont-init: info: running /etc/cont-init.d/03-setup-privoxy
- cont-init: info: /etc/cont-init.d/03-setup-privoxy exited 0
- s6-rc: info: service legacy-cont-init successfully started
- s6-rc: info: service legacy-services: starting
- services-up: info: copying legacy longrun qbittorrent (no readiness notification)
- s6-rc: info: service legacy-services successfully started
- ******** Information ********
- To control qBittorrent, access the Web UI at http://localhost:8080
Add Comment
Please, Sign In to add comment