[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: [Sheflug] Eek : VPN



 

> -----Original Message-----
> From: shef-lug-admin [at] list.sheflug.org.uk 
> [mailto:shef-lug-admin [at] list.sheflug.org.uk] On Behalf Of Chris Johnson
> Sent: Tuesday, August 24, 2004 10:17 AM
> To: shef-lug [at] list.sheflug.org.uk
> Subject: RE: [Sheflug] Eek : VPN
> 
> > OpenVPN is what you want. Can be Windows (2000 or above) or Linux 
> > either end.
> >
> > http://openvpn.sf.net/
> >
> > Cheers,
> > Al.
> 
> Al,
> That looks great.  I'm pretty sure I can install the software 
> bit of it now.
> What's twisting my brain is how to set up my linux firewall 
> (IPCOP) and ADSL router to pass the information through to 
> the target box with the vpn host on it.

Just out of curiosity, why don't you put an IP-Cop supported NIC in your
firewall and do away with the router? That way, you could do direct VPN
to VPN without having to worry about the router. You may want to
investigate VPN passthrough on the router. You probably wouldn't lose
any functionality if you're thinking about web servers etc on your home
LAN because you could set up a DMZ interface on the IPCop box, or
alternatively, do what I do and use port redirection on the IPCop box to
get your web server visible to the outside. (Accepting no responsibility
for any errors) the Dynamode PCI ADSL card *may* have the supported
Conexant chipset (ebuyer quick ref code 37969). For more info, have a
look at the IPCop Wiki HCL at
http://www.ipcop.org/cgi-bin/twiki/view/IPCop/IPCopHCLv01 Also, the
Dynamode web site: http://www.dynamode.net/ADSL/M-ADSL-PCI-C.pdf

FWIW, I'm still using an Alcatel Speedtouch USB modem for my broadband,
plugged into the IPCop box. I had a very early engineer-installed DSL
connection before wires only became available.

Personally, I'd forget about the router completely... Just my 2p

-- 
David
___________________________________________________________________

Sheffield Linux User's Group -
http://www.sheflug.co.uk/mailfaq.html

  GNU the choice of a complete generation.