Solved

shorewall vpn bridge

Posted on 2007-11-19
2
1,132 Views
Last Modified: 2013-11-16
Im running Ubuntu 7.1 with Shorewall as a router/firewall for my home network.

 I have pptp client configured to connect to my office.  From the ubuntu desktop I can browse shares etc.
From other computers in the LAN I can't browse or ping anything on the office LAN.


I assume this is because shorewall is not configured to bridge the interfaces.  ppp0 and eth11(my LAN nic which hands out DHCP leases)

I am configureing shorewall via webmin.

thanks
0
Comment
Question by:livegirllove
2 Comments
 
LVL 13

Accepted Solution

by:
WizRd-Linux earned 500 total points
ID: 20408135
If your server is making the connection then you will be able to forward the packets through, however keep in mind that the clients will not know or understand the remote lan or how to resolve addresses.

say you home lan is 10.0.0.0/24 and you office lan is 192.168.0.0/24.  When a client on your home lan tries to access 192.168.0.1 it will forward the packet to your shorewall box and it should then in turn forward the packets to the vpn concentrator.

If you try to resolve main.office.local (assuming this is 192.168.0.1), your client will be unable to locate the dns server that provides the resolution for main.office.local, hence will never know that it is 192.168.0.1.

Everything you do will have to occur via IP addresses unless you specify the DNS server of your company on the clients.
0
 
LVL 1

Author Comment

by:livegirllove
ID: 20722255
wow, i am sorry i missed your reply.

I would be ok  routing based on IP address.  But I have BIND9 on the ubuntu server and its working.  Can I set it to use my office dns server as a forwarder so I can resolve office names from a home client?  But still only route names that resolve to the office through the VPN.
0

Featured Post

Control application downtime with dependency maps

Visualize the interdependencies between application components better with Applications Manager's automated application discovery and dependency mapping feature. Resolve performance issues faster by quickly isolating problematic components.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
SSL RA VPN 7 104
VirtualBOX on GNS3 11 98
configure ASA Vlan Interface 14 48
Expanding Subnet Mask 20 41
How to set-up an On Demand, IPSec, Site to SIte, VPN from a Draytek Vigor Router to a Cyberoam UTM Appliance. A concise guide to the settings required on both devices
This article offers some helpful and general tips for safe browsing and online shopping. It offers simple and manageable procedures that help to ensure the safety of one's personal information and the security of any devices.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

863 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

17 Experts available now in Live!

Get 1:1 Help Now