mirror of
https://github.com/openoms/bitcoin-tutorials.git
synced 2025-12-20 13:24:19 +01:00
correct ufw settings
This commit is contained in:
@@ -6,10 +6,12 @@ Bring the power of lightning to the web with in-browser payments and identity, a
|
|||||||
|
|
||||||
### Preparation on the Pi
|
### Preparation on the Pi
|
||||||
|
|
||||||
* For Joule to work you will need to allow connection to your RaspiBolt from any IP (0.0.0.0). The communications will remain encrypted with TLS, but there is a a risk of a DDOS or other attack.
|
For Joule to work you will need to allow connection to your RaspiBolt from any IP (0.0.0.0). The communications will remain encrypted with TLS, but there is a a risk of a DDOS or other attack.
|
||||||
|
|
||||||
|
* Open the LND configuration file:
|
||||||
`$ sudo nano /home/bitcoin/.lnd/lnd.conf`
|
`$ sudo nano /home/bitcoin/.lnd/lnd.conf`
|
||||||
|
|
||||||
Add the following line to your lnd configuration file in the section to `[Application Options]`:
|
Add the following line in the section to `[Application Options]`:
|
||||||
```tlsextraip=0.0.0.0```
|
```tlsextraip=0.0.0.0```
|
||||||
* Delete tls.cert (restarting LND will recreate it):
|
* Delete tls.cert (restarting LND will recreate it):
|
||||||
`$ sudo rm /home/bitcoin/.lnd/tls.*`
|
`$ sudo rm /home/bitcoin/.lnd/tls.*`
|
||||||
@@ -23,11 +25,8 @@ Bring the power of lightning to the web with in-browser payments and identity, a
|
|||||||
* Unlock wallet
|
* Unlock wallet
|
||||||
`$ lncli unlock`
|
`$ lncli unlock`
|
||||||
|
|
||||||
* Allow the ufw firewall to listen on 8080 from the LAN:
|
* Allow the REST api communicate with any IP address:
|
||||||
`$ sudo ufw allow from 192.168.0.0/24 to any port 8080 comment 'allow REST api from local LAN'`
|
`$ sudo ufw allow 8080 comment 'allow REST api from public internet'`
|
||||||
|
|
||||||
For the #RECKLESS it can be opened for any address
|
|
||||||
`$ sudo ufw allow from 0.0.0.0 to any port 8080 comment 'allow REST api from ANYWHERE'`
|
|
||||||
|
|
||||||
* restart and check the firewall:
|
* restart and check the firewall:
|
||||||
`$ sudo ufw enable`
|
`$ sudo ufw enable`
|
||||||
|
|||||||
Reference in New Issue
Block a user