Solved

shorewall vpn bridge

Posted on 2007-11-19
2
1,130 Views
Last Modified: 2013-11-16
Im running Ubuntu 7.1 with Shorewall as a router/firewall for my home network.

 I have pptp client configured to connect to my office.  From the ubuntu desktop I can browse shares etc.
From other computers in the LAN I can't browse or ping anything on the office LAN.


I assume this is because shorewall is not configured to bridge the interfaces.  ppp0 and eth11(my LAN nic which hands out DHCP leases)

I am configureing shorewall via webmin.

thanks
0
Comment
Question by:livegirllove
2 Comments
 
LVL 13

Accepted Solution

by:
WizRd-Linux earned 500 total points
ID: 20408135
If your server is making the connection then you will be able to forward the packets through, however keep in mind that the clients will not know or understand the remote lan or how to resolve addresses.

say you home lan is 10.0.0.0/24 and you office lan is 192.168.0.0/24.  When a client on your home lan tries to access 192.168.0.1 it will forward the packet to your shorewall box and it should then in turn forward the packets to the vpn concentrator.

If you try to resolve main.office.local (assuming this is 192.168.0.1), your client will be unable to locate the dns server that provides the resolution for main.office.local, hence will never know that it is 192.168.0.1.

Everything you do will have to occur via IP addresses unless you specify the DNS server of your company on the clients.
0
 
LVL 1

Author Comment

by:livegirllove
ID: 20722255
wow, i am sorry i missed your reply.

I would be ok  routing based on IP address.  But I have BIND9 on the ubuntu server and its working.  Can I set it to use my office dns server as a forwarder so I can resolve office names from a home client?  But still only route names that resolve to the office through the VPN.
0

Featured Post

IT, Stop Being Called Into Every Meeting

Highfive is so simple that setting up every meeting room takes just minutes and every employee will be able to start or join a call from any room with ease. Never be called into a meeting just to get it started again. This is how video conferencing should work!

Join & Write a Comment

Problem Description:   Couple of months ago we upgraded the ADSL line at our branch office from Home to Business line. The purpose of transforming the service to have static public IP’s. We were in need for public IP’s to publish our web resour…
You ever wonder how to backup Linux system files just like Windows System Restore?  Well you can use Timeshift in Linux to perform those similar action.  This tutorial will show you how to backup your system files and keep regular intervals. Note…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

708 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

12 Experts available now in Live!

Get 1:1 Help Now