AdGuardHome Web Interface on multiple addresses?

Started by Inxsible, August 19, 2023, 05:09:37 PM

Previous topic - Next topic
Is there a way to allow the web interface for AdGuardHome to be available on multiple interfaces but not all ?

Initially, I set it up on ALL interfaces and the yaml file used 0.0.0.0.

http:
      address:0.0.0.0:8080


I have 5 separate VLANs and I have since changed the bind_hosts to stop listening on all interfaces and only enabled it on 4 of my VLANs. I would like to do the same to the web interface but I was looking to see what format I can use to do that

The following allows access on VLAN 1, but I would also like access on VLAN 7 and VLAN 10

http:
      address:192.168.1.1:8080


I tried the following three formats, but then AdguardHome failed to start up.

http:
      address:192.168.1.1:8080
      address:192.168.7.1:8080
      address:192.168.10.1:8080



http:
      address:192.168.1.1:8080, 192.168.7.1:8080, 192.168.10.1:8080



http:
      address:
            - 192.168.1.1:8080
            - 192.168.7.1:8080
            - 192.168.10.1:8080


None of the above format worked for me and googling doesn't provide relevant results and I was hoping if someone could tell me what format to use



August 19, 2023, 05:31:57 PM #1 Last Edit: August 19, 2023, 05:44:02 PM by Inxsible
Weirdly, when I remove 0.0.0.0 from the bind_hosts my OpnSense firmware updates start timing out. I can still access the internet just fine, but the Opnsense updates keep failing.

So should AdGuardHome be listening on ALL interfaces by default for dns: bind_hosts? Seems strange that only the OpnSense updates should fail while the internet is still accessible !!

There's no need to have AGH management available on all vlans, a single (mgmt) vlan should suffice, ideall restricted to the IP you're connecting from.

For DNS, leaving Unbound running on 53 with a port forward for AGH on the VLANs in scope is still my recommendation.

I need to be able to access AdGuard Home from my main LAN but also from my VLAN when I connect via Wireguard in case there's something I need to do when on the road.

Is there a way to enable the web-interface from more than 1 interfaces without enabling it on all interfaces?

Firewall - NAT - Port Forward

Add a rule:

Source your WG IP - Destination WG Interface IP (port (AGH port)) - redirect to AGH IP and Port

Thanks for the blog loaded with so many information. Stopping by your blog helped me to get what I was looking for. วิดีโอสล็อต