shadow_82

Untitled

Aug 28th, 2025
77
0
25 days
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 6.01 KB | None | 0 0
  1. [[email protected]] > interface/wireguard/print
  2. Flags: X - disabled; R - running
  3. ...
  4. 3 R name="wg-nordvpn" mtu=1420 listen-port=58673
  5. private-key="[privatekey]"
  6. public-key="[publickey]"
  7.  
  8. 4 R ;;; wg-protonvpn
  9. name="wg-protonvpn" mtu=1420 listen-port=13234
  10. private-key="[privatekey]"
  11. public-key="[publickey]"
  12.  
  13. [[email protected]] > ip/address/print
  14. Flags: I - INVALID; D - DYNAMIC; S - SLAVE
  15. Columns: ADDRESS, NETWORK, INTERFACE
  16. # ADDRESS NETWORK INTERFACE
  17. ;;; defconf
  18. 0 S 192.168.1.1/24 192.168.1.0 ether2
  19. ;;; defconf
  20. ...
  21. 10 10.5.0.3/32 10.5.0.3 wg-nordvpn
  22. 11 10.2.0.2/30 10.2.0.0 wg-protonvpn
  23.  
  24. [[email protected]] > interface/wireguard/peers/print
  25. Columns: INTERFACE, PUBLIC-KEY, ENDPOINT-ADDRESS, ENDPOINT-PORT, ALLOWED-ADDRESS
  26. # INTERFACE PUBLIC-KEY ENDPOINT-ADDRE ENDPO ALLOWED-ADDRESS
  27. ...
  28. ;;; wg-nordvpn
  29. 3 wg-nordvpn [publickey] [nordvpnpeer] 51820 0.0.0.0/0
  30. ;;; wg-protonvpn
  31. 4 wg-protonvpn [publickey] [protonvpnpeer] 51820 0.0.0.0/0
  32.  
  33. [[email protected]] > ip/firewall/filter/print
  34. Flags: X - disabled, I - invalid; D - dynamic
  35. 0 D ;;; special dummy rule to show fasttrack counters
  36. chain=forward action=passthrough
  37. ...
  38. 8 X ;;; DNS from VPN
  39. chain=output action=accept protocol=udp src-address=192.168.0.0/16 out-interface=wg-protonvpn
  40. dst-port=53 log=no log-prefix=""
  41. ...
  42. 12 ;;; defconf: accept established,related,untracked
  43. chain=input action=accept connection-state=established,related,untracked
  44. ...
  45. 18 ;;; defconf: drop invalid
  46. chain=input action=drop connection-state=invalid
  47. 19 ;;; defconf: accept ICMP
  48. chain=input action=accept protocol=icmp log=no log-prefix=""
  49. 20 chain=forward action=accept protocol=icmp log=no log-prefix=""
  50. 21 ;;; defconf: accept to local loopback (for CAPsMAN)
  51. chain=input action=accept dst-address=127.0.0.1
  52. 22 ;;; defconf: drop all not coming from LAN
  53. chain=input action=drop in-interface-list=!LAN
  54. 23 ;;; defconf: accept in ipsec policy
  55. chain=forward action=accept ipsec-policy=in,ipsec
  56. 24 ;;; defconf: accept out ipsec policy
  57. chain=forward action=accept ipsec-policy=out,ipsec
  58. 25 ;;; defconf: fasttrack
  59. chain=forward action=fasttrack-connection hw-offload=yes connection-state=established,related
  60. src-address=!192.168.1.0/24 log=no log-prefix=""
  61. 26 ;;; defconf: accept established,related, untracked
  62. chain=forward action=accept connection-state=established,related,untracked
  63. 27 ;;; defconf: drop invalid
  64. chain=forward action=drop connection-state=invalid
  65. 28 ;;; defconf: drop all from WAN not DSTNATed
  66. chain=forward action=drop connection-state=new connection-nat-state=!dstnat
  67. in-interface-list=WAN
  68.  
  69. [[email protected]] > ip/firewall/nat/print
  70. Flags: X - disabled, I - invalid; D - dynamic
  71. ...
  72. 1 ;;; Ubuntu PP
  73. chain=srcnat action=masquerade src-address=192.168.3.10 out-interface=wg-protonvpn log=no
  74. log-prefix=""
  75. 2 ;;; defconf: masquerade
  76. chain=srcnat action=masquerade out-interface-list=WAN log=no log-prefix=""
  77. ipsec-policy=out,none
  78. ...
  79.  
  80. [[email protected]] > ip/firewall/mangle/print
  81. Flags: X - disabled, I - invalid; D - dynamic
  82. 0 D ;;; special dummy rule to show fasttrack counters
  83. chain=prerouting action=passthrough
  84. 1 D ;;; special dummy rule to show fasttrack counters
  85. chain=forward action=passthrough
  86. 2 D ;;; special dummy rule to show fasttrack counters
  87. chain=postrouting action=passthrough
  88. ...
  89. 5 ;;; Win11 Pro VM
  90. chain=prerouting action=mark-routing new-routing-mark=nordvpn passthrough=yes
  91. src-address=192.168.1.42 log=no log-prefix=""
  92. 6 ;;; Ubuntu PP
  93. chain=prerouting action=mark-routing new-routing-mark=protonvpn passthrough=yes
  94. src-address=192.168.3.10 log=no log-prefix=""
  95.  
  96. [[email protected]] > ip/route/print
  97. Flags: D - DYNAMIC; X - DISABLED, I - INACTIVE, A - ACTIVE; c - CONNECT, s - STATIC, v - VPN
  98. Columns: DST-ADDRESS, GATEWAY, ROUTING-TABLE, DISTANCE
  99. # DST-ADDRESS GATEWAY ROUTING-TABLE DISTANCE
  100. ...
  101. DAv 0.0.0.0/0 pppoe-out1 main 1
  102. DAc 10.2.0.0/30 wg-protonvpn main 0
  103. DAc 10.5.0.3/32 wg-nordvpn main 0
  104. DAc [inetaddress]/32 pppoe-out1 main 0
  105. ...
  106. DAc 192.168.1.0/24 bridge main 0
  107. ...
  108. 8 As 192.168.3.0/29 192.168.1.10 main 1
  109. 9 As 192.168.3.8/29 192.168.1.10 main 1
  110. ...
  111. 12 As [nordvpnpeer]/32 pppoe-out1 main 1
  112. 13 As 0.0.0.0/0 wg-nordvpn nordvpn 1
  113. 14 As 0.0.0.0/0 10.2.0.1 protonvpn 1
  114.  
  115. [[email protected]] > routing/rule/print
  116. Flags: X - disabled, I - inactive
  117. 0 src-address=192.168.1.42/32 action=lookup table=nordvpn
  118. 1 src-address=192.168.3.10/29 action=lookup table=protonvpn
  119.  
  120. [[email protected]] > ip/dns/print
  121. servers: [DNS Server1]
  122. dynamic-servers: [DNS Server2]
  123. [DNS Server3]
  124. use-doh-server:
  125. verify-doh-cert: no
  126. doh-max-server-connections: 5
  127. doh-max-concurrent-queries: 50
  128. doh-timeout: 5s
  129. allow-remote-requests: yes
  130. max-udp-packet-size: 4096
  131. query-server-timeout: 2s
  132. query-total-timeout: 10s
  133. max-concurrent-queries: 100
  134. max-concurrent-tcp-sessions: 20
  135. cache-size: 2048KiB
  136. cache-max-ttl: 1w
  137. address-list-extra-time: 0s
  138. vrf: main
  139. mdns-repeat-ifaces:
  140. cache-used: 356KiB
  141.  
  142. [[email protected]] > routing/table/print
  143. Flags: D - dynamic; X - disabled, I - invalid; U - used
  144. 0 D name="main" fib
  145. 1 name="nordvpn" fib
  146. 2 name="protonvpn" fib
Advertisement
Add Comment
Please, Sign In to add comment