Uploaded November 2023 | Updated September 2026, 2 weeks ago
#OPNSense #LDAP #ActiveDirectory #Authentication
Full steps can be found at i12bretro.github.io/tutorials/0391.html
01. Open a web browser and navigate to the OPNSense web UI
02. Log in to OPNSense
03. Select System ≫ Access ≫ Servers from the left navigation menu
04. Click the Add button in the top right of the screen
05. Complete the form with the following information
The setup below will allow members of the DnsAdmins AD group to authenticate, tweak as needed
Descriptive name: i12bretro.local
Type: LDAP
Hostname or IP address
i12bretro.local
Port value: 389
Transport: TCP - Standard
Protocol version: 3
Bind credentials:
User DN: CN=Readonly SVC,CN=Users,DC=i12bretro,DC=local
Password: Read0nly!!
Search scope: Entire Subtree
Base DN: DC=i12bretro,DC=local
Authentication containers: CN=Users,DC=i12bretro,DC=local
Extended Query:
&(memberOf=CN=DnsAdmins,CN=Users,DC=i12bretro,DC=local)
User naming attribute: sAMAccountName
06. Scroll to the bottom of the page and click the Save button
07. Select System ≫ Access ≫ Tester from the left navigation menu
08. Test the login capability of an LDAP user meeting the group requirements set above
09. Select System ≫ Settings ≫ General from the left navigation menu
10. Scroll down to the Authentication section
11. Click the Server dropdown and enable authentication against the LDAP server
12. Scroll to the bottom of the page and click the Save button
13. Select System ≫ Access ≫ Users from the left navigation menu
14. Click the cloud button at the bottom right of the user table
15. Select users from LDAP to allow access to OPNSense
16. Click the edit button next to each user and add the appropriate Group Memberships
17. Click Lobby ≫ Logout from the left navigation menu
18. Test logging in as an LDAP authenticated user
### Connect with me and others ###
★ Discord: discord.com/invite/EzenvmSHW8
★ Reddit: reddit.com/r/i12bretro
★ Twitter: twitter.com/i12bretro
#OPNSense #LDAP #ActiveDirectory #Authentication
Full steps can be found at i12bretro.github.io/tutorials/0391.html
01. Open a web browser and navigate to the OPNSense web UI
02. Log in to OPNSense
03. Select System ≫ Access ≫ Servers from the left navigation menu
04. Click the Add button in the top right of the screen
05. Complete the form with the following information
The setup below will allow members of the DnsAdmins AD group to authenticate, tweak as needed
Descriptive name: i12bretro.local
Type: LDAP
Hostname or IP address
i12bretro.local
Port value: 389
Transport: TCP - Standard
Protocol version: 3
Bind credentials:
User DN: CN=Readonly SVC,CN=Users,DC=i12bretro,DC=local
Password: Read0nly!!
Search scope: Entire Subtree
Base DN: DC=i12bretro,DC=local
Authentication containers: CN=Users,DC=i12bretro,DC=local
Extended Query:
&(memberOf=CN=DnsAdmins,CN=Users,DC=i12bretro,DC=local)
User naming attribute: sAMAccountName
06. Scroll to the bottom of the page and click the Save button
07. Select System ≫ Access ≫ Tester from the left navigation menu
08. Test the login capability of an LDAP user meeting the group requirements set above
09. Select System ≫ Settings ≫ General from the left navigation menu
10. Scroll down to the Authentication section
11. Click the Server dropdown and enable authentication against the LDAP server
12. Scroll to the bottom of the page and click the Save button
13. Select System ≫ Access ≫ Users from the left navigation menu
14. Click the cloud button at the bottom right of the user table
15. Select users from LDAP to allow access to OPNSense
16. Click the edit button next to each user and add the appropriate Group Memberships
17. Click Lobby ≫ Logout from the left navigation menu
18. Test logging in as an LDAP authenticated user
### Connect with me and others ###
★ Discord: discord.com/invite/EzenvmSHW8
★ Reddit: reddit.com/r/i12bretro
★ Twitter: twitter.com/i12bretro

![Run AdGuard Home - Cross Platform Pi Hole Alternative - in Docker
#AdGuard #AdBlocker #Docker
*** Updated 06/03/2023
Full steps can be found at https://i12bretro.github.io/tutorials/0429.html
What is AdGuard Home?
AdGuard Home is a network-wide software for blocking ads and tracking. After you set it up, itll cover ALL your home devices, and you dont need any client-side software for that.
It operates as a DNS server that re-routes tracking domains to a “black hole”, thus preventing your devices from connecting to those servers. Its based on software we use for our public AdGuard DNS servers, and both share a lot of code. - https://github.com/AdguardTeam/AdguardHome
Installing Docker
01. Log into the Linux host and run the following commands in a terminal window
# update software respositories
sudo apt update
# install available software updates
sudo apt upgrade -y
# install prerequisites
sudo apt install apt-transport-https ca-certificates curl gnupg2 software-properties-common -y
# add docker gpg key
curl -fsSL https://download.docker.com/linux/debian/gpg | sudo apt-key add -
# add docker apt repository
sudo apt-add-repository deb [arch=amd64] https://download.docker.com/linux/debian buster stable
# install docker
sudo apt install docker -y
# add the current user to the docker group
sudo usermod -aG docker $USER
# reauthenticate for the new group membership to take effect
su - $USER
Running AdGuard Home Container
01. Continue with the following commands in a terminal window
# make adguard working directories
mkdir ~/docker/adguard/work -p && mkdir ~/docker/adguard/conf -p
# run the adguardhome docker image
docker run name adguardhome -v ~/docker/adguard/work:/opt/adguardhome/work -v ~/docker/adguard/conf:/opt/adguardhome/conf -p 53:53/tcp -p 53:53/udp -p 80:80/tcp -p 3000:3000/tcp restart unless-stopped -d adguard/adguardhome
02. Open a web browser and navigate to http://localhost:3000
03. Click the Get Started button
04. Set the Admin Web Interface and DNS Server network interfaces and ports ≫ Click Next
05. Enter an admin username and password ≫ Click Next
06. Click Next on page 4
07. Click Open Dashboard on the Congratutations page
08. Log in using the admin username and password created during the install
09. Welcome to AdGuardHome running as a Docker container
Source: https://github.com/AdguardTeam/AdGuardHome/wiki/Docker
### Connect with me and others ###
★ Discord: https://discord.com/invite/EzenvmSHW8
★ Reddit: https://reddit.com/r/i12bretro
★ Twitter: https://twitter.com/i12bretro Run AdGuard Home - Cross Platform Pi Hole Alternative - in Docker](https://i.ytimg.com/vi/p4jBY4WvJ6w/mqdefault.jpg)


![Run miniPaint - Browser Based Image Editor - on Linux
#miniPaint #ImageEditor #Linux
Full steps can be found at https://i12bretro.github.io/tutorials/0895.html
What is miniPaint?
[miniPaint is an] online image editor lets you create, edit images using HTML5 technologies. No need to buy, download, install or have obsolete flash. No ads. Key features: layers, filters, HTML5, open source, Photoshop alternative.
miniPaint operates directly in the browser. You can create images, paste from the clipboard (ctrl+v) or upload from the computer (using menu or drag & drop). Nothing will be sent to any server. Everything stays in your browser. - https://github.com/viliusle/miniPaint
Installing NodeJS
01. Log into the Linux device
02. Run the following commands in a terminal window
# add nodejs software repository
curl -sL https://deb.nodesource.com/setup_20.x | sudo bash -
# install nodejs
sudo apt install nodejs -y
# test node is working
node -v
# test npm is working
npm -v
Running miniPaint
01. Continue with the following commands:
# install git
sudo apt install git -y
# cd back to home
cd ~
# clone minipaint github repo
git clone https://github.com/viliusle/miniPaint.git ./miniPaint
# cd into git clone
cd miniPaint
# install dependencies
npm install
# build minipaint
npm run build
# run minipaint
npm run server
02. Open a web browser and navigate to http://DNSorIP:8080
03. Welcome to miniPaint
Source: https://github.com/viliusle/miniPaint/wiki/Build-instructions
### Connect with me and others ###
★ Discord: https://discord.com/invite/EzenvmSHW8
★ Reddit: https://reddit.com/r/i12bretro
★ Twitter: https://twitter.com/i12bretro Run miniPaint - Browser Based Image Editor - on Linux](https://i.ytimg.com/vi/r6Etqtdn4E4/mqdefault.jpg)





![Install ownCloud on Windows with WSL2
#OwnCloud #Windows #WSL
Full steps can be found at https://i12bretro.github.io/tutorials/0153.html
What is OwnCloud?
OwnCloud is a suite of client-server software for creating file hosting services and using them. OwnCloud is functionally very similar to the widely used Dropbox, with the primary functional difference being that OwnCloud is free and open-source, and thereby allowing anyone to install and operate it without charge on a private server. - https://en.wikipedia.org/wiki/OwnCloud
Installing WSL
01. Launch Powershell as administrator
02. Run the following command
# enable WSL feature
dism.exe /online /enable-feature /featurename:Microsoft-Windows-Subsystem-Linux /all /norestart
# enable virtual machine platform
dism.exe /online /enable-feature /featurename:VirtualMachinePlatform /all
03. Type Y to reboot the system
04. Launch Powershell as administrator and run the following additional commands to use WSL 2
# enable virtualization platform
Enable-WindowsOptionalFeature -Online -FeatureName VirtualMachinePlatform
# enable wsl2
wsl set-default-version 2
# download the wsl kernel update
$ProgressPreference = SilentlyContinue; Invoke-WebRequest https://wslstorestorage.blob.core.windows.net/wslblob/wsl_update_x64.msi -OutFile .wsl_update_x64.msi
# reset progress preference
$ProgressPreference = Continue
# install the downloaded file
.wsl_update_x64.msi
05. Click the Start Button ≫ Search Microsoft Store ≫ Select Microsoft Store
06. Search for the Linux distribution to install (Debian, Ubuntu, etc), Debian in this example
07. Select the Linux distribution and click the Get button
08. After the Linux distribution downloads and installs, click Open or select the distribution from the Start menu to launch it
09. Input a username and password to be used in the Linux environment
Installing ownCloud
01. Continue with the following commands in WSL
# update software repositories
sudo apt update
# install software updates
sudo apt upgrade -y
# install prerequisite package(s)
sudo apt install wget -y
# install Apache HTTPD and MySQL
sudo apt install apache2 mariadb-server mariadb-client -y
# install PHP components
sudo apt install php7.4 libapache2-mod-php7.4 php7.4-mysql php-common php7.4-cli php7.4-common php7.4-json php7.4-opcache php7.4-readline php7.4-intl php7.4-json php7.4-gd php7.4-mbstring php7.4-mysql php7.4-xml php7.4-zip php7.4-curl -y
# start the mariadb service
sudo service mariadb start
# configure the MySQL database
sudo su
mysql_secure_installation
02. Press Enter to login as root
03. Type N and press Enter to not switch to socket authentication
04. Type Y and press Enter to set a root password, type the password twice to confirm
05. Type Y and press Enter to remove anonymous users
06. Type Y and press Enter to disallow root login remotely
07. Type Y and press Enter to remove the test database
08. Type Y and press Enter to reload privilege tables
09. Run the following command to login into MySQL:
mysql -u root -p
10. Authenticate with the root password set earlier
11. Run the following commands to create the ownCloud database and database user
CREATE DATABASE ownclouddb;
GRANT ALL ON ownclouddb.* to owncloud_rw@localhost IDENTIFIED BY ownCl0ud!!;
FLUSH PRIVILEGES;
EXIT;
exit
12. Continue with the following commands to download and extract ownCloud in the Apache webroot
# download latest owncloud version
sudo wget -O /tmp/owncloud.tar.bz2 https://download.owncloud.com/server/stable/owncloud-latest.tar.bz2
# extract owncloud-latest.tar.bz2
sudo tar -xf /tmp/owncloud.tar.bz2 directory /var/www
# set the owner of the new owncloud directory to www-data
sudo chown -R www-data:www-data /var/www/owncloud
# create a new owncloud.conf file to configure the site
sudo nano /etc/apache2/sites-available/owncloud.conf
13. Paste the following configuration into owncloud.conf
Alias /owncloud /var/www/owncloud/
≪Directory /var/www/owncloud/≫
Options +FollowSymlinks
AllowOverride All
≪IfModule mod_dav.c≫
Dav off
≪/IfModule≫
SetEnv HOME /var/www/owncloud
SetEnv HTTP_HOME /var/www/owncloud
≪/Directory≫
14. Press CTRL+O, Enter, CTRL+X to write the changes to owncloud.conf
....Full steps can be found on GitHub [link at the top]
### Connect with me and others ###
★ Discord: https://discord.com/invite/EzenvmSHW8
★ Reddit: https://reddit.com/r/i12bretro
★ Twitter: https://twitter.com/i12bretro Install ownCloud on Windows with WSL2](https://i.ytimg.com/vi/t30Kd4RNJ4Y/mqdefault.jpg)