Solved

shorewall vpn bridge

Posted on 2007-11-19
2
1,137 Views
Last Modified: 2013-11-16
Im running Ubuntu 7.1 with Shorewall as a router/firewall for my home network.

 I have pptp client configured to connect to my office.  From the ubuntu desktop I can browse shares etc.
From other computers in the LAN I can't browse or ping anything on the office LAN.


I assume this is because shorewall is not configured to bridge the interfaces.  ppp0 and eth11(my LAN nic which hands out DHCP leases)

I am configureing shorewall via webmin.

thanks
0
Comment
Question by:livegirllove
2 Comments
 
LVL 13

Accepted Solution

by:
WizRd-Linux earned 500 total points
ID: 20408135
If your server is making the connection then you will be able to forward the packets through, however keep in mind that the clients will not know or understand the remote lan or how to resolve addresses.

say you home lan is 10.0.0.0/24 and you office lan is 192.168.0.0/24.  When a client on your home lan tries to access 192.168.0.1 it will forward the packet to your shorewall box and it should then in turn forward the packets to the vpn concentrator.

If you try to resolve main.office.local (assuming this is 192.168.0.1), your client will be unable to locate the dns server that provides the resolution for main.office.local, hence will never know that it is 192.168.0.1.

Everything you do will have to occur via IP addresses unless you specify the DNS server of your company on the clients.
0
 
LVL 1

Author Comment

by:livegirllove
ID: 20722255
wow, i am sorry i missed your reply.

I would be ok  routing based on IP address.  But I have BIND9 on the ubuntu server and its working.  Can I set it to use my office dns server as a forwarder so I can resolve office names from a home client?  But still only route names that resolve to the office through the VPN.
0

Featured Post

Flexible connectivity for any environment

The KE6900 series can extend and deploy computers with high definition displays across multiple stations in a variety of applications that suit any environment. Expand computer use to stations across multiple rooms with dynamic access.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

You ever wonder how to backup Linux system files just like Windows System Restore?  Well you can use Timeshift in Linux to perform those similar action.  This tutorial will show you how to backup your system files and keep regular intervals. Note…
In the world of WAN, QoS is a pretty important topic for most, if not all, networks. Some WAN technologies have QoS mechanisms built in, but others, such as some L2 WAN's, don't have QoS control in the provider cloud.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

808 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question