Network

Moderators: grovkillen, Stuntteam, TD-er

Post Reply
Message
Author
BertB
Normal user
Posts: 1049
Joined: 25 Apr 2015, 14:39

Network

#1 Post by BertB » 11 Sep 2016, 13:53

Hi,
I have 10 ESPEay modules in my house, keeping an eye on temperature, dust, humidity, air pressure, voltages etc.
They all report to one of two RPI's 3 with Domoticz.

It is not difficult to access a device in my LAN from the outside world, but with 10 (the number is growing) ESPEasy modules, it is getting a bit devious to configure my router.
Is it not possible to have some kind of a reverse gateway that has one ip for access from the internet and a table with ESPEasu IP addresses?

tozett
Normal user
Posts: 734
Joined: 22 Dec 2015, 15:46
Location: Germany

Re: Network

#2 Post by tozett » 13 Sep 2016, 21:27

each of the could have a list of all the others...
not yours?
Attachments
node.png
node.png (18.44 KiB) Viewed 14219 times

BertB
Normal user
Posts: 1049
Joined: 25 Apr 2015, 14:39

Re: Network

#3 Post by BertB » 14 Sep 2016, 14:40

Sure, and it works just fine as long as I am on the same LAN, but I cannot open other nodes when I am let's say on my work.

tozett
Normal user
Posts: 734
Joined: 22 Dec 2015, 15:46
Location: Germany

Re: Network

#4 Post by tozett » 14 Sep 2016, 16:42

if you have different lan-segments,
or a lan at home with a router to the internet,
and another lan at office, with a router/firewall to the internet,
you have the issue of routing through the lan-segments.

https://en.wikipedia.org/wiki/Router_(computing)

this is not special for espeasy, its lan-routing.
or like a VPN for this and other lan/net-services over IP.

BertB
Normal user
Posts: 1049
Joined: 25 Apr 2015, 14:39

Re: Network

#5 Post by BertB » 14 Sep 2016, 17:33

Hi,
I agree with you that this subject is more network related than it is to ESPEasy. However, maybe more EASPEasians have this question.
I only have a lan in my home. It is as save as I can make ik it, because I only allow for external connections to devices with a secure (https) connection and passwords.
With this, I can access servers like Domoticz, while I am somewhere else.

What I would like is that I can access the ESPEasy nodes in a safe way too. I do not trust in passwords only when it comes to switching on and off devices in my house.

Perhaps someone knows how to create such a safe way to do that.

tozett
Normal user
Posts: 734
Joined: 22 Dec 2015, 15:46
Location: Germany

Re: Network

#6 Post by tozett » 14 Sep 2016, 20:11

make a tunnel through your router at home into your home lan.
for only the secure port of mqtt.
send everthing over this tunnel via mqtt...
voila! secure as mqtt-secure is...

User avatar
nonflammable
Normal user
Posts: 42
Joined: 09 Mar 2016, 22:19
Location: Poland

Re: Network

#7 Post by nonflammable » 14 Sep 2016, 22:17

VPN ?

Martinus

Re: Network

#8 Post by Martinus » 15 Sep 2016, 08:12

I'd say VPN is a viable solution to keep things safe. Would strongly discourage connecting to ESP modules directly from the internet.

BertB
Normal user
Posts: 1049
Joined: 25 Apr 2015, 14:39

Re: Network

#9 Post by BertB » 15 Sep 2016, 14:21

VPN ... okay.
Fortunately, I have some time in the weeks to come, to find out what that means :-)

tozett
Normal user
Posts: 734
Joined: 22 Dec 2015, 15:46
Location: Germany

Re: Network

#10 Post by tozett » 15 Sep 2016, 17:05

as a start, may you try the openvpn...

http://lmgtfy.com/?q=openvpn

BertB
Normal user
Posts: 1049
Joined: 25 Apr 2015, 14:39

Re: Network

#11 Post by BertB » 15 Sep 2016, 19:17

I admit, I only red it briefly, but what I understand is, that I need a VPN server, for instance on my Synology or on a (dedicated?) RPI and a client for each and every device that is connected to the VPN?
Lets assume I have 10 ESPEasy nodes, a network printer, a NAS, two Domoticz RPIs etc, they all need the VPN client?

BertB
Normal user
Posts: 1049
Joined: 25 Apr 2015, 14:39

Re: Network

#12 Post by BertB » 20 Sep 2016, 17:26

I downloaded and installed pivpn on a rpiB, according to the prescriptions.
Then, I went to the Androide play store and downloaded openvpn connect. Works perfect. Just what I need.

Now, I try to obtain a similar package for my Windows 10 laptop.
If I found something an installed it, it refuses to connect due to some obscure reason.
What kind of client are you using and how did you install it?

tozett
Normal user
Posts: 734
Joined: 22 Dec 2015, 15:46
Location: Germany

Re: Network

#13 Post by tozett » 20 Sep 2016, 18:29

https://play.google.com/store/apps/deta ... kt.openvpn

Openvpn from Arne Schwabe for Android.
Very good recommendation,
No hassle since 3 years..

BertB
Normal user
Posts: 1049
Joined: 25 Apr 2015, 14:39

Re: Network

#14 Post by BertB » 20 Sep 2016, 18:38

Thanks, but I need something for Windows 10:-)

tozett
Normal user
Posts: 734
Joined: 22 Dec 2015, 15:46
Location: Germany

Re: Network

#15 Post by tozett » 20 Sep 2016, 18:44

There are some Open Clients for Windows. Check the Reputation on the web...?!
Good Look, you Manager all so gar vrry Well..

BertB
Normal user
Posts: 1049
Joined: 25 Apr 2015, 14:39

Re: Network

#16 Post by BertB » 20 Sep 2016, 23:22

well I have tried a bunch of open vpn connect and gui stuff, last couple of days and it all crappy, as fas as I am concerned.
The only client that works well is the one I got with my android Phone in play store.

tozett
Normal user
Posts: 734
Joined: 22 Dec 2015, 15:46
Location: Germany

Re: Network

#17 Post by tozett » 21 Sep 2016, 09:07

did you checked the "original" openvpn client for win10?

some pictures i found here on the web:
https://www.ipvanish.com/visualguides/O ... Windows10/

BertB
Normal user
Posts: 1049
Joined: 25 Apr 2015, 14:39

Re: Network

#18 Post by BertB » 21 Sep 2016, 17:53

Yes that helped a lot.
Thanks.

hamster
Normal user
Posts: 62
Joined: 27 Sep 2015, 21:01
Location: UK

Re: Network

#19 Post by hamster » 23 Sep 2016, 17:50

My ASUS RT-AC3200 has VPN Server / OpenVPN built in :)
makes it extremely easy to set up. Once connected I can access all my ESP's (15 in total) using their local ip address from anywhere.
Last edited by hamster on 23 Sep 2016, 20:50, edited 1 time in total.

BertB
Normal user
Posts: 1049
Joined: 25 Apr 2015, 14:39

Re: Network

#20 Post by BertB » 23 Sep 2016, 19:18

I AM going to make a short description of setting up vpn in the Home Page.

What kind of server do you use?

tozett
Normal user
Posts: 734
Joined: 22 Dec 2015, 15:46
Location: Germany

Re: Network

#21 Post by tozett » 24 Sep 2016, 09:12

he wrote :
hamster wrote:My ASUS RT-AC3200 has VPN Server / OpenVPN built in :)
-> OpenVPN built in ...

(like Openwrt-firmware on lots of cheap router can also).

but maybe we are going offside the ESPeasy here ..?

BertB
Normal user
Posts: 1049
Joined: 25 Apr 2015, 14:39

Re: Network

#22 Post by BertB » 24 Sep 2016, 21:17

tozett wrote:he wrote :
[but maybe we are going offside the ESPeasy here ..?
Only for the purists maybe ;)

I like to be able to configur my ESPEasy nodes from outside my home. I am quite a lot on the move.
Per haps other members like it too.

User avatar
pwassink
Normal user
Posts: 60
Joined: 31 Oct 2016, 08:33
Location: Vorden NL

Re: Network

#23 Post by pwassink » 07 Nov 2016, 15:32

Just a consideration, most of us do run Domoticz on a raspberry already 24h a day, it is more than powerfull enough to perform some additional tasks.

You might find "Neorouter" free a nice solution for safe vpn acces to your local lan through an easy configurable app, web enabled even and the Pi could
even take care of the whole neorouter servertask, there is a special client for many different Os'ses and even for most mobile telephones.
Finally open up just one tcp port in your router and point it to the Pi and everything works wherever you are ..

Just visit http://www.neorouter.com/ and try the free version, it solves most problems mentioned here in just a few actions.

No i do not get paid , dont own stocks for this and yes i use this tool every day and live happily anywhere with acces to the stuff i neeed .. :D

BertB
Normal user
Posts: 1049
Joined: 25 Apr 2015, 14:39

Re: Network

#24 Post by BertB » 07 Nov 2016, 16:45

Thanks

Post Reply

Who is online

Users browsing this forum: No registered users and 20 guests