chiark
/
gitweb
/
~mdw
/
zones
/ blobdiff
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
shortlog
|
log
|
commit
|
commitdiff
|
tree
raw
|
inline
| side by side
distorted: Add a service name for the Tor onion router.
[zones]
/
distorted.lisp
diff --git
a/distorted.lisp
b/distorted.lisp
index 253c560f5d59f8ae3058ad99e27cf0faee3272c8..60f854ef9c63abaad838d482c828b32a00494c62 100644
(file)
--- a/
distorted.lisp
+++ b/
distorted.lisp
@@
-7,8
+7,7
@@
(load "hosts" :verbose nil)
;;; (RFC1918 addresses are allocated from Cambridge G-RIN.)
(defnet distorted.org.uk 172.29.198.0/23
;;; (RFC1918 addresses are allocated from Cambridge G-RIN.)
(defnet distorted.org.uk 172.29.198.0/23
- (untrusted 256
- (wireless 64))
+ (untrusted 256)
(trusted 256
(fretwank 128
(unsafe 32)
(trusted 256
(fretwank 128
(unsafe 32)
@@
-26,7
+25,7
@@
(defhost guvnor.demon 80.177.3.76)
;; Unsafe network.
(defhost guvnor (unsafe 1))
(defhost metalzone (unsafe 2))
;; Unsafe network.
(defhost guvnor (unsafe 1))
(defhost metalzone (unsafe 2))
-
(defhost evolution
(unsafe 3))
+
;;(defhost evolution.fretwank
(unsafe 3))
(defhost vampire (unsafe 4))
;; Safe network.
(defhost vampire (unsafe 4))
;; Safe network.
@@
-34,10
+33,11
@@
(defhost tubescreamer (safe 1))
(defhost obsidian (safe 2))
;; Wireless network.
(defhost obsidian (safe 2))
;; Wireless network.
-(defhost evolution.wireless (wireless 1))
+(defhost vampire.untrusted (untrusted 1))
+(defhost evolution (untrusted 2))
;; Virtual private network.
;; Virtual private network.
-(defhost
fuzzface
(virtual 1))
+(defhost
crybaby
(virtual 1))
;; Special network for ITS.
;; It doesn't understand point-to-point links, so we need a little net.
;; Special network for ITS.
;; It doesn't understand point-to-point links, so we need a little net.
@@
-51,7
+51,7
@@
(setf *default-zone-admin* "hostmaster@distorted.org.uk")
(preferred-subnet-case
(fretwank
(preferred-subnet-case
(fretwank
- (setf *default-zone-source* '
metalzon
e.distorted.org.uk.)
+ (setf *default-zone-source* '
vampir
e.distorted.org.uk.)
(defhost www-frontend metalzone))
(t
(setf *default-zone-source* 'guvnor.distorted.org.uk.)
(defhost www-frontend metalzone))
(t
(setf *default-zone-source* 'guvnor.distorted.org.uk.)
@@
-85,33
+85,32
@@
(defzone distorted.org.uk
(guvnor (inet :a guvnor.demon) (fretwank :a guvnor))
;;
;; Wireless gateway
(guvnor (inet :a guvnor.demon) (fretwank :a guvnor))
;;
;; Wireless gateway
- (
wireless :net wireless
)
- (evolution (
fretwank :a evolution) (wireless :a evolution.wireless
))
+ (
untrusted :net untrusted
)
+ (evolution (
untrusted :a evolution
))
;;
;; Local services
(@ :svc www-frontend)
((www ftp wiki git bugs mail rawk)
(inet :svc guvnor.demon)
(fretwank :svc metalzone))
;;
;; Local services
(@ :svc www-frontend)
((www ftp wiki git bugs mail rawk)
(inet :svc guvnor.demon)
(fretwank :svc metalzone))
- ((db)
+ ((db
tor
)
(inet :svc guvnor.demon)
(fretwank :svc vampire))
(vox (inet :svc guvnor.demon) (fretwank :svc vampire))
;;
;; Internal services
(inet :svc guvnor.demon)
(fretwank :svc vampire))
(vox (inet :svc guvnor.demon) (fretwank :svc vampire))
;;
;; Internal services
- ((news ntp) (fretwank :svc metalzone))
- ((www-cache wpad ntp
1
) (fretwank :svc vampire))
+ ((news ntp
1
) (fretwank :svc metalzone))
+ ((www-cache wpad ntp) (fretwank :svc vampire))
;;
;; Wired ethernet
(fretwank :net fretwank)
(metalzone (inet :a guvnor.demon) (fretwank :a metalzone))
;;
;; Wired ethernet
(fretwank :net fretwank)
(metalzone (inet :a guvnor.demon) (fretwank :a metalzone))
- (vampire (fretwank :a vampire))
- (tubescreamer (fretwank :a tubescreamer))
+ (vampire (fretwank :a vampire) (untrusted :a vampire.untrusted))
(obsidian (fretwank :a obsidian))
;;
;; Virtual network
(virtual :net virtual)
(obsidian (fretwank :a obsidian))
;;
;; Virtual network
(virtual :net virtual)
- (
fuzzface (virtual :a fuzzface
))
+ (
crybaby (virtual :a crybaby
))
;;
;; ITS
(its :net its)
;;
;; ITS
(its :net its)
@@
-134,11
+133,7
@@
(defrevzone trusted
(defrevzone untrusted
:ns ((metalzone.ns :ip metalzone) (vampire.ns :ip vampire))
(defrevzone untrusted
:ns ((metalzone.ns :ip metalzone) (vampire.ns :ip vampire))
- #+subnet/fretwank (wireless :ns (metalzone.ns vampire.ns))
- #+subnet/fretwank (@ :cidr-delegation
- (wireless
- (wireless
- 198.29.172.wireless.198.29.172.in-addr.arpa))))
+ :reverse untrusted)
(defzone dhcp.distorted.org.uk
:ns ((metalzone.ns :ip metalzone) (vampire.ns :ip vampire))
(defzone dhcp.distorted.org.uk
:ns ((metalzone.ns :ip metalzone) (vampire.ns :ip vampire))
@@
-147,8
+142,4
@@
(defzone dhcp.distorted.org.uk
(defzone dhcp.199.29.172.in-addr.arpa
:ns ((metalzone.ns :ip metalzone) (vampire.ns :ip vampire)))
(defzone dhcp.199.29.172.in-addr.arpa
:ns ((metalzone.ns :ip metalzone) (vampire.ns :ip vampire)))
-(defzone wireless.198.29.172.in-addr.arpa
- :ns ((metalzone.ns :ip metalzone) (vampire.ns :ip vampire))
- :reverse ((wireless :bytes 4)))
-
;;;----- That's all, folks --------------------------------------------------
;;;----- That's all, folks --------------------------------------------------