Thanks again for the replies.
I do not have public IPv6 so have used private local IPv4 and IPv6 NAT with
dnsmasq, but the firewall software is no longer maintained. The Debian software
search list shows firehol and firewalld as popular, so I spent a while reading
manpages. Firwalld reported a possible problem with configuration loss after
changes if not using NM, so I continued reading.
I did look at pfsense and opnsense some time ago, have used similar packages
before, and would be happy to look again.
I have just been told that I am unlikely to get Fibre To The Premises any time
soon, so BT keep trying to tell me that Fibre To The Cabinet (which I have
now) is wonderful. Most of the houses here are now HMO's with no facilities,
so I am almost an isolated user..
I am trying to set up safe routing between
WAN via analogue modem connected to the motherboard ethernet
(modem to be replaced by fibre modem when available)
WIFI from the same modem at the moment, eventually from HOME
DMZ email and http(s)
HOME General use and web access
SECURE trusted
CCTV continuous high data rate overheats some smaller devices.
Almost everything that can be is hard wired with ethernet.
--
Chris Bell
www.chrisbell.org.uk
--
GLLUG mailing list
[email protected]
https://mailman.lug.org.uk/mailman/listinfo/gllug