[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: [Sheflug] Eek : VPN



> OpenVPN is what you want. Can be Windows (2000 or above) or
> Linux either end.
>
> http://openvpn.sf.net/
>
> Cheers,
> Al.

Al,
That looks great.  I'm pretty sure I can install the software bit of it now.
What's twisting my brain is how to set up my linux firewall (IPCOP) and ADSL
router to pass the information through to the target box with the vpn host
on it.

I know I've got to be able to ping my work server (for arguments sake
192.168.1.1 from my PC at home (192.168.2.2) before I can even start looking
at vpn.

work network  192.168.1.0/24
Work firewall
link network to adsl modem/router 192.168.7.0/24
Work ADSL router

Internet

Home ADSL router
link network 192.168.6.0/24
home firewall
home network 192.168.2.0/24

So to ping 192.168.1.1 from 192.168.2.2 do I just need to set up static
routes in the routing tables of the firewalls and adsl routers?

Do I need to set up static routes for the work network AND the link network
in the home firewall and home router or just routes for the work network?

How is the traffic created through the static routes affected by the
firewall?  Do I have to have pin holes in the firewall?  I've only ever had
to worry about keeping everything out before and letting some stuff through
a firewall is new to me, be gentle! ;0)
=================
If I'm vpning in to work from a dial up connection so I've got

work network  192.168.1.0/24
Work firewall
link network to adsl modem/router 192.168.7.0/24
Work ADSL router

Internet

modem
Dial up laptop

Where / how can I add the static routing (the laptop is most likely to have
windows on it) so it knows to look for 192.168.1.0/24 through the ipaddress
of works ADSL router.
=======================================

I've not yet bought the home adsl router.  Should I be looking for any
particular features?


I know there are lots of questions but I've googled and most of the results
only cover setting up the software, not the intermediate hardware/firewalls.

Chris Johnson
(No not that one, the other one!)
(running SUSE 9, 512MB PIII 600 (ish))

---
Outgoing mail is certified Virus Free.
Checked by AVG anti-virus system (http://www.grisoft.com).
Version: 6.0.742 / Virus Database: 495 - Release Date: 19/08/2004


___________________________________________________________________

Sheffield Linux User's Group -
http://www.sheflug.co.uk/mailfaq.html

  GNU the choice of a complete generation.