====== Net-Guard ======
Warum ist OMV nur auf IP 10 erreichbar ?
===== Installation =====
* Debian Trixie Image ...
* VM anlegen mit Bridge Interface auf br0
* Installation Headless
* IP anpassen in ''/etc/network/interfaces'' \\
root@Net-Guard:~# cat /etc/network/interfaces
# This file describes the network interfaces available on your system
# and how to activate them. For more information, see interfaces(5).
source /etc/network/interfaces.d/*
# The loopback network interface
auto lo
iface lo inet loopback
# The primary network interface
allow-hotplug enp1s0
#iface enp1s0 inet dhcp
iface enp1s0 inet static
address 192.168.30.8/24
gateway 192.168.30.1
dns-nameservers 8.8.8.8 8.8.4.4
* DNS temporär anpassen in ''nano /etc/resolv.conf'' \\
root@Net-Guard:~# cat /etc/resolv.conf
# Generated by dhcpcd from enp1s0.dhcp
# /etc/resolv.conf.head can replace this line
domain fritz.box
#nameserver 192.168.30.8
# /etc/resolv.conf.tail can replace this line
nameserver 8.8.8.8
* Apt Sources anpassen \\
deb http://debian.inf.tu-dresden.de/debian/ trixie main non-free-firmware
deb-src http://debian.inf.tu-dresden.de/debian/ trixie main non-free-firmware
deb http://security.debian.org/debian-security trixie-security main non-free-firmware
deb-src http://security.debian.org/debian-security trixie-security main non-free-firmware
# trixie-updates, to get updates before a point release is made;
# see https://www.debian.org/doc/manuals/debian-reference/ch02.en.html#_updates_and_backports
deb http://debian.inf.tu-dresden.de/debian/ trixie-updates main non-free-firmware
deb-src http://debian.inf.tu-dresden.de/debian/ trixie-updates main non-free-firmware
* Update \\ ''su -'' \\ ''apt update && apt upgrade -y && apt install -y git git-lfs silversearcher-ag wavemon hexedit sudoku tcpdump iptraf mc htop dcfldd nano usbutils openvpn ranger ncdu can-utils multitail fd-find lsof x11vnc minicom joystick i2c-tools speedtest-cli iotop fio ir-keytable curl inxi lshw nala fzf duf''
===== AdGuard Home =====
* ''su -''
* ''curl -s -S -L https://raw.githubusercontent.com/AdguardTeam/AdGuardHome/master/scripts/install.sh | sh -s %%--%% -v'' \\
root@Net-Guard:~# curl -s -S -L https://raw.githubusercontent.com/AdguardTeam/AdGuardHome/master/scripts/install.sh | sh -s -- -v
starting AdGuard Home installation script
channel: release
operating system: linux
cpu type: amd64
AdGuard Home will be installed into /opt/AdGuardHome
checking tar
script is executed with root privileges
no need to uninstall
downloading package from https://static.adtidy.org/adguardhome/release/AdGuardHome_linux_amd64.tar.gz to AdGuardHome_linux_amd64.tar.gz
successfully downloaded AdGuardHome_linux_amd64.tar.gz
unpacking package from AdGuardHome_linux_amd64.tar.gz into /opt
successfully unpacked, contents:
total 32544
-rwxrwxrwx 1 root root 33120440 Sep 29 16:35 AdGuardHome
-rw-rw-rw- 1 root root 566 Sep 29 16:35 AdGuardHome.sig
-rw-r--r-- 1 root root 134596 Sep 29 16:35 CHANGELOG.md
-rw-r--r-- 1 root root 35149 Sep 29 16:35 LICENSE.txt
-rw-r--r-- 1 root root 22553 Sep 29 16:35 README.md
2025/10/18 10:20:35 [info] service: AdGuard Home, version v0.107.67
2025/10/18 10:20:35 [info] service: control action=install
2025/10/18 10:20:35 [info] service: started
2025/10/18 10:20:35 [info] service: line_num=1 line="Almost ready!"
2025/10/18 10:20:35 [info] service: line_num=2 line="AdGuard Home is successfully installed and will automatically start on boot."
2025/10/18 10:20:35 [info] service: line_num=3 line="There are a few more things that must be configured before you can use it."
2025/10/18 10:20:35 [info] service: line_num=4 line="Click on the link below and follow the Installation Wizard steps to finish setup."
2025/10/18 10:20:35 [info] service: line_num=5 line="AdGuard Home is now available at the following addresses:"
2025/10/18 10:20:35 [info] go to http://127.0.0.1:3000
2025/10/18 10:20:35 [info] go to http://[::1]:3000
2025/10/18 10:20:35 [info] go to http://192.168.30.8:3000
2025/10/18 10:20:35 [info] go to http://[fe80::5054:ff:fe4d:1313%enp1s0]:3000
2025/10/18 10:20:35 [info] service: action has been done successfully action=install system=linux-systemd
AdGuard Home is now installed and running
you can control the service status with the following commands:
sudo /opt/AdGuardHome/AdGuardHome -s start|stop|restart|status|install|uninstall
* Kommandos \\ ''sudo /opt/AdGuardHome/AdGuardHome -s start'' \\ ''sudo /opt/AdGuardHome/AdGuardHome -s stop'' \\ ''sudo /opt/AdGuardHome/AdGuardHome -s restart'' \\ ''sudo /opt/AdGuardHome/AdGuardHome -s status'' \\ ''sudo /opt/AdGuardHome/AdGuardHome -s install'' \\ ''sudo /opt/AdGuardHome/AdGuardHome -s uninstall ''
**TBC**
Auto-Updates: Füge Cron-Job: crontab -e, hinzufügen 0 3 * * 0 /opt/AdGuardHome/AdGuardHome --update >/dev/null 2>&1 (wöchentlich).
===== WireGuard =====
* ''su -''
* ''apt install wireguard iptables''
* ''net.ipv4.ip_forward = 1'' muss gesetzt sein ! \\
root@Net-Guard:~# cat /etc/sysctl.d/50_net.conf
net.ipv4.ip_forward = 1
* Automatischer Start bei Systemstart \\ ''systemctl enable wg-quick@wg0'' \\ ''systemctl start wg-quick@wg0''
===== sudo einrichten =====