This will guide you through the setup of the EdgeRouter X.
80 Both 192.168.1.X 180 HTTP tomcat 443 Both 192.168.1.X 1443 HTTPS tomcat 22 Both 192.168.1.X SSH brimble
80 Both 192.168.1.X HTTP tomcat 443 Both 192.168.1.X HTTPS 22 Both 192.168.1.X SSH brimble 32400 Both 192.168.1.X Plex
configure
set firewall name WAN_LOCAL rule 30 action accept set firewall name WAN_LOCAL rule 30 description ike set firewall name WAN_LOCAL rule 30 destination port 500 set firewall name WAN_LOCAL rule 30 log disable set firewall name WAN_LOCAL rule 30 protocol udp set firewall name WAN_LOCAL rule 40 action accept set firewall name WAN_LOCAL rule 40 description esp set firewall name WAN_LOCAL rule 40 log disable set firewall name WAN_LOCAL rule 40 protocol esp set firewall name WAN_LOCAL rule 50 action accept set firewall name WAN_LOCAL rule 50 description nat-t set firewall name WAN_LOCAL rule 50 destination port 4500 set firewall name WAN_LOCAL rule 50 log disable set firewall name WAN_LOCAL rule 50 protocol udp set firewall name WAN_LOCAL rule 60 action accept set firewall name WAN_LOCAL rule 60 description l2tp set firewall name WAN_LOCAL rule 60 destination port 1701 set firewall name WAN_LOCAL rule 60 ipsec match-ipsec set firewall name WAN_LOCAL rule 60 log disable set firewall name WAN_LOCAL rule 60 protocol udp
set vpn l2tp remote-access ipsec-settings authentication mode pre-shared-secret set vpn l2tp remote-access ipsec-settings authentication pre-shared-secret <secret> set vpn l2tp remote-access authentication mode local set vpn l2tp remote-access authentication local-users username <username> password <secret>
set vpn l2tp remote-access client-ip-pool start 192.168.100.90 set vpn l2tp remote-access client-ip-pool stop 192.168.100.99
set vpn l2tp remote-access dns-servers server-1 <address> (currently 8.8.8.8) set vpn l2tp remote-access dns-servers server-2 <address> (currently 8.8.4.4)
set vpn l2tp remote-access dhcp-interface eth0
set vpn ipsec ipsec-interfaces interface eth0
commit ; save
brimNAS 192.168.1.4 BrimblecomAP 192.168.1.5 BrimDownstairsAP 192.168.1.6 hoobs 192.168.1.7
configure
set system offload hwnat enable
commit ; save