From e1a9e20cb4991e0acc0bf9e7ec433e0c9b2d35ee Mon Sep 17 00:00:00 2001 From: arf20 Date: Mon, 3 Nov 2025 20:26:10 +0100 Subject: PKI --- arfnet2.html | 116 +++++++++++++++++++++++++++++++++++++++++++---------------- 1 file changed, 86 insertions(+), 30 deletions(-) (limited to 'arfnet2.html') diff --git a/arfnet2.html b/arfnet2.html index 3eb7552..e8148aa 100644 --- a/arfnet2.html +++ b/arfnet2.html @@ -26,7 +26,7 @@

After the disastrous ISP schism

Masterplan

-

Stage 1: very safe

+

Stage 1: very safe

-

Stage 2: new services

+

Stage 2: new services

-

Stage 3*: finally

+

*Stage 3: finally

+

Logical network

+
                    +---------+
+           +--------+         |
+   internet| router |   DMZ   |
+           +--------++        |
+                     +--------+
+

DELL PowerConnect 5424 switch

Port assignents

@@ -996,16 +1023,22 @@ http://comm.lan:8080 +pki.arf20.com +/ = /var/www/pki.arf20.com/html
/download/ = +http://ca.lan:80 + + + - + status.yero.dev http://yerovps.lan:3001 - + panaland.arf20.com /var/www/panaland.arf20.com/html/ @@ -1242,6 +1275,18 @@ comment
  • Kamailio
  • OAI?
  • +

    arfnet2-ca DMZ.24 Debian 12 +CT

    +

    Certificate Authority PKI

    +

    mail (ARFNET-IONOS VPS) 5.250.186.185 2001:ba0:210:d600::1

    @@ -1395,7 +1440,7 @@ Number Assignation Table DMZ.10 -wazuh.lan +secure.lan @@ -1459,21 +1504,26 @@ Number Assignation Table DN42 service machine +DMZ.24 +ca.lan +Certificate Authority + + - + DMZ.192 yero-debian yero.lan - + DMZ.195 exo-debian exo.lan - + DMZ.196 loofa-debian loofa.lan @@ -1878,108 +1928,114 @@ Number Assignation Table +pki.arf20.com +CNAME +web.arf20.com + + + - + status.arf20.com CNAME mail.arf20.com - + lists.arf20.com CNAME mail.arf20.com - + mlmmj.arf20.com CNAME mail.arf20.com - + - + lahomosexualidadde.arf20.com CNAME weonpollo.xyz - + panaland.arf20.com CNAME web.arf20.com - + - + _acme-challenge.jellyfin CNAME (challenge) - + _acme-challenge.irc CNAME (challenge) - + _acme-challenge.matrix CNAME (challenge) - + _acme-challenge.mail CNAME (challenge) - + _acme-challenge.xmpp CNAME (challenge) - + - + arf20.com MX mail.arf20.com - + selector._domainkey TXT (DKIM) DKIM for selector ‘selector’ - + _dmarc TXT (DMARC) - + arf20.com TXT (SPF) -- cgit v1.2.3