ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    Linux Domain Controller

    Scheduled Pinned Locked Moved IT Discussion
    linuxdebian
    113 Posts 11 Posters 43.1k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • scottalanmillerS
      scottalanmiller
      last edited by

      Yes, IPSec is such a pain to deal with. We used to have a huge site to site mesh using Netgear VPN hardware. That was well over a decade ago, though.

      Now I feel old.

      1 Reply Last reply Reply Quote 0
      • JaredBuschJ
        JaredBusch
        last edited by

        For the record, an Ubiquiti EdgeMax Lite will cap out an OpenVPN connection at about 10-14mbps because it will take up all the processor.

        So unless you are going to push more than that, there is just no reason to worry about it.

        1 Reply Last reply Reply Quote 1
        • S
          Sparkum
          last edited by

          Not talking much traffic at all.

          Honestly might not even put all devices on it.

          Going to still run local DC, so I'm thinking maybe three cloudatcost, my main desktop, and local DC all on VPN

          So maybe 5, might push it to one or two more computers but nothing really intensive.

          Would/Should I be able to host my dc on CentOS7 as well as OpenVPN? Or would that require two? (Dev1)

          Thanks

          1 Reply Last reply Reply Quote 0
          • scottalanmillerS
            scottalanmiller
            last edited by

            Yes, you can put OpenVPN aggregator on the same VM as your DC, that's no problem.

            S 1 Reply Last reply Reply Quote 0
            • S
              Sparkum @scottalanmiller
              last edited by Sparkum

              @scottalanmiller

              This is more so what I meant.

              Load.JPG

              Not typically in the 80's but it's usually floating around the 60's

              (Just did a restart so I'm assuming thats why its spiking)

              Edit: However; its definately not dropping from 87% now

              scottalanmillerS 1 Reply Last reply Reply Quote 0
              • S
                Sparkum
                last edited by

                Just doing a quick google search found this how to

                https://www.digitalocean.com/community/tutorials/how-to-setup-and-configure-an-openvpn-server-on-centos-7

                I assume for the most part this should be fine minus not using google'd DNS records

                scottalanmillerS 1 Reply Last reply Reply Quote 1
                • scottalanmillerS
                  scottalanmiller @Sparkum
                  last edited by

                  @Sparkum said:

                  @scottalanmiller

                  This is more so what I meant.

                  Load.JPG

                  Not typically in the 80's but it's usually floating around the 60's

                  (Just did a restart so I'm assuming thats why its spiking)

                  Edit: However; its definately not dropping from 87% now

                  There is another thread on this. That is a completely worthless graph and should be removed from their site. It was created by someone who didn't know Linux and it uses the most common newbie Linux admin mistake that there is - reading the output of the "free" command incorrectly. Your system is not using 87%, likely more like 20-30%.

                  Show the completely output of **free -m"" and we will show you how to read the real memory utilization numbers.

                  S 1 Reply Last reply Reply Quote 1
                  • scottalanmillerS
                    scottalanmiller @Sparkum
                    last edited by

                    @Sparkum said:

                    Just doing a quick google search found this how to

                    https://www.digitalocean.com/community/tutorials/how-to-setup-and-configure-an-openvpn-server-on-centos-7

                    I assume for the most part this should be fine minus not using google'd DNS records

                    I would expect that to be fine. I run an ELK stack on Digital Ocean and our FreeBSD lab system.

                    1 Reply Last reply Reply Quote 0
                    • S
                      Sparkum @scottalanmiller
                      last edited by

                      @scottalanmiller

                      Haha thanks thats alot better and brings me confidence in my box back.

                      Especially after everyone said a Samba server was one of the lowest resource wise.

                      free.JPG

                      scottalanmillerS 1 Reply Last reply Reply Quote 0
                      • scottalanmillerS
                        scottalanmiller @Sparkum
                        last edited by

                        @Sparkum said:

                        @scottalanmiller

                        Haha thanks thats alot better and brings me confidence in my box back.

                        Especially after everyone said a Samba server was one of the lowest resource wise.

                        free.JPG

                        Argh, I hate that modified view. The simple "free" number is gone now.

                        BUT, the used number is correct. You are USING 65MB. Seriously, just 65MB. So you are in pretty good share. Out of 489MB total, 65MB is used. Leaving you with 424MB free!

                        Linux is awesome on resources 😉

                        1 Reply Last reply Reply Quote 0
                        • S
                          Sparkum
                          last edited by

                          Gah!

                          Not sure what I did yesterday but now I cant contact any mirrors or ping anything!

                          Come on Linux be my friend!

                          scottalanmillerS 1 Reply Last reply Reply Quote 0
                          • scottalanmillerS
                            scottalanmiller @Sparkum
                            last edited by

                            @Sparkum said:

                            Gah!

                            Not sure what I did yesterday but now I cant contact any mirrors or ping anything!

                            Come on Linux be my friend!

                            nslookup or dig is going to be your friend here. Check your DNS settings. Something is not resolving.

                            1 Reply Last reply Reply Quote 0
                            • S
                              Sparkum
                              last edited by Sparkum

                              Is there any chance this isnt on me?

                              When I first booted initially I got this as well.

                              And I dont beleve I've changed networks settings to date?

                              Just changed DNS (temporarily) to google's DNS and same results.

                              Also keep loosing connection to the console this morning.

                              1 Reply Last reply Reply Quote 1
                              • S
                                Sparkum
                                last edited by

                                Yep was definitely on their end, I wasnt able to get into the console for about 20 minutes. Was about to submit a ticket and there was a related article, which seemed exactly like my problem. Waiting a little more and everything works now (as origional settings)

                                1 Reply Last reply Reply Quote 1
                                • ?
                                  A Former User
                                  last edited by

                                  I've never been able to full saturate gigabit links with OpenVPN. But I have with IPSEC and Tinc and that was using Core 2 duo era cpu's. Cisco stuff in $3k range couldn't do it.

                                  scottalanmillerS 1 Reply Last reply Reply Quote 0
                                  • scottalanmillerS
                                    scottalanmiller @A Former User
                                    last edited by

                                    @thecreativeone91 said:

                                    Cisco stuff in $3k range couldn't do it.

                                    That's like the lowest bar in the industry.

                                    1 Reply Last reply Reply Quote 0
                                    • S
                                      Sparkum @Sparkum
                                      last edited by

                                      @Sparkum

                                      So how should I have my DNS settings,

                                      If I leave them as CloudatCost default I cant ping anything, if I change them to what they would be once I get them added to the domain, nothing, if I change them to google's DNS I can see the outside world.

                                      I assume this is not a good idea though? Or is there no real downside?

                                      Would I have it set as google's DNS until I can get OpenVPN up and going?

                                      ? 1 Reply Last reply Reply Quote 0
                                      • ?
                                        A Former User @Sparkum
                                        last edited by

                                        @Sparkum said:

                                        @Sparkum

                                        So how should I have my DNS settings,

                                        If I leave them as CloudatCost default I cant ping anything, if I change them to what they would be once I get them added to the domain, nothing, if I change them to google's DNS I can see the outside world.

                                        I assume this is not a good idea though? Or is there no real downside?

                                        Would I have it set as google's DNS until I can get OpenVPN up and going?

                                        I would use the DHCP set ones until you get the VPN setup. Then you will want DNS lookups on the Domain over the VPN. Not sure why C@C's DNS isn't working for you. I haven't had issues with it.

                                        S 1 Reply Last reply Reply Quote 0
                                        • S
                                          Sparkum @A Former User
                                          last edited by

                                          @thecreativeone91

                                          I didnt at first, and then all of a sudden nothing worked. (Hadnt touched any network settings yet until that point)

                                          1 Reply Last reply Reply Quote 0
                                          • S
                                            Sparkum
                                            last edited by

                                            Wondering if anyone had any advice on this as well (for OpenVPN)

                                            I thought I had the setup go so smooth last night, worked through a few errors but cant seem to get around this one.

                                            thanks

                                            openvpn.JPG

                                            1 Reply Last reply Reply Quote 0
                                            • 1
                                            • 2
                                            • 3
                                            • 4
                                            • 5
                                            • 6
                                            • 5 / 6
                                            • First post
                                              Last post