2019-05-22 18:07:35
@Fireduck Are you still handing out space on foreverbucket? I'd like to try it out.

Tilian
2019-05-22 18:08:32
@Tilian sure, there is 50MB free for anyone

Fireduck
2019-05-22 18:08:36
Awesome. Thank you.

Tilian
2019-05-22 18:08:41
if you need more than that, let me know and I can credit some

Fireduck
2019-05-22 18:10:05
Let me know if you encounter any difficulties

Fireduck
2019-05-22 19:30:22
I need to build a wifi to wifi vpn gateway

Fireduck
2019-05-22 19:30:52
on one side it will act as a client on a restricted wifi network. Over that, I'll need to make a vpn link to something.

Fireduck
2019-05-22 19:31:13
Then on the other side it needs to act as an wifi access point and nat+route any traffic over the vpn

Fireduck
2019-05-22 19:31:22
what is the easiest software stack to use for this?

Fireduck
2019-05-22 19:36:37
linux

Rotonen
2019-05-22 19:37:51
as far as i can tell, now with wireguard, you’d have everything in-kernel, if so inclined

Rotonen
2019-05-22 19:38:16
ok, I'll probably try it with a raspberry pi. It has an AP capable wifi in it already, I'll just have to add an additional one for the uplink.

Fireduck
2019-05-22 19:38:40
draw the plan, that always helps

Rotonen
2019-05-22 19:38:48
boxes and arrows

Rotonen
2019-05-22 19:39:41
and i guess performance and security are not hard requirements there if a rasppi is in the mix

Rotonen
2019-05-22 19:40:55
yep

Fireduck
2019-05-22 19:41:23
it is to allow a shit IoT device to call home on a somewhat locked down network

Fireduck
2019-05-22 19:46:22
It isn't too hard, just all the little bullshit adds up. Like nat + ap + dhcpd + vpn

Fireduck
2019-05-22 20:02:27
just get proper gear with multiple radios per AP and isolate that stuff onto its own SSID / VLAN and firewall that off from the rest of your network

Rotonen
2019-05-22 20:03:16
that’s what i do, all guests, human or otherwise. go on the guest network

Rotonen
2019-05-22 20:03:36
or buy a 4G wifi router

Rotonen
2019-05-22 20:04:40
i somewhat think you’re trapping yourself into an exceedingly complicated and nuanced architecture there

Rotonen
2019-05-22 20:06:01
The problem is I have no control over the main wifi network

Fireduck
2019-05-22 20:06:15
I just have to work around it

Fireduck
2019-05-22 21:11:44
so just get a second internet connection just for the IoT crap

Rotonen
2019-05-22 21:12:07
that is one option, a 3g hotspot

Fireduck
2019-05-22 21:12:35
certainly the simple option

Fireduck
2019-05-22 21:13:44
a lot of them are even battery backed
https://www.amazon.com/slp/portable-wifi-routers/jwo5fnr9bhsr77p ✓ FREE DELIVERY possible on eligible purchases

Rotonen
2019-05-22 22:31:56
lol, being DoSed do hard my pfsense box just goes offline

Fireduck