Thanks again for the replies.
I do not have public IPv6 so have used private local IPv4 and IPv6 NAT with 
dnsmasq, but the firewall software is no longer maintained. The Debian software 
search list shows firehol and firewalld as popular, so I spent a while reading 
manpages. Firwalld reported a possible problem with configuration loss after 
changes if not using NM, so I continued reading.
I did look at pfsense and opnsense some time ago, have used similar packages 
before, and would be happy to look again. 
I have just been told that I am unlikely to get Fibre To The Premises any time 
soon, so BT keep trying to tell me that Fibre To The Cabinet (which I have 
now) is wonderful. Most of the houses here are now HMO's with no facilities, 
so I am almost an isolated user..
I am trying to set up safe routing between

WAN     via analogue modem connected to the motherboard ethernet
         (modem to be replaced by fibre modem when available)
WIFI    from the same modem at the moment, eventually from HOME
DMZ     email and http(s)
HOME    General use and web access
SECURE  trusted
CCTV    continuous high data rate overheats some smaller devices.

Almost everything that can be is hard wired with ethernet.

-- 
Chris Bell
www.chrisbell.org.uk



-- 
GLLUG mailing list
[email protected]
https://mailman.lug.org.uk/mailman/listinfo/gllug

Reply via email to