<< | Thread Index | >> ]    [ << | Date Index | >> ]

To: cipe-l,AT,inka,DOT,de
Subject: Re: Static routes to specific servers through VPN adapter (ratherthan connecting two subnets together)?
From: Phil Scarratt <fil,AT,draxsen,DOT,com>
Date: Fri, 06 Jun 2003 15:51:49 +1000
Organization: Draxsen Technologies
References: <1054749988.3ede3524c02c5@chaos.smallworld.no>

Yes it would. Simply make the mask 255.255.255.255 for each route on Windows. By default (ie without adding any routes manually under windows) you will only be able to acccess the linux firewall machine.

To do this, the easiest thing to do is to put the PEER ip addresses of the CIPE link on a different subnet to either end - eg 192.168.3.x

Fil

Arne Kepp wrote:
Hi, I am currently in the process of building a new firewall with VPN support
and CIPE is currently my first choice, but I have a quick question:

Given the following configuration:

W2K machine with 192.168.2.5 on "eth0" on NATed network + CIPE VPN adapter
                     |
ADSL router with internal IP 192.168.2.1 , dynamic external IP
                     |
           <INTERNET>
                     |
Linux firewall with fixed external IP yyy.yyy.yyy.yyy, internal ip 192.168.1.1
and CIPE
                     |
Servers with IPs 192.168.1.2 and 192.168.1.3

Say that the W2K client only needs access to those two servers, would it work 
to
simply add a static route to 192.168.1.2 (and another one for .3) through the
VPN adapter? I do not want the VPN device to be the default gateway for all
traffic and I do not want to bridge the subnets.

Any better suggestions or links to howtos/tutorials/examples regarding windows
cipe clients would be appreciated too : )

Thank you ,

Arne Kepp
SysAdmin, Smallworld Systems AS
http://www.smallworld.no

--
Message sent by the cipe-l,AT,inka,DOT,de mailing list.
Unsubscribe: mail majordomo,AT,inka,DOT,de, "unsubscribe cipe-l" in body
Other commands available with "help" in body to the same address.
CIPE info and list archive: <URL:http://sites.inka.de/~bigred/devel/cipe.html>

-- Phil Scarratt Draxsen Technologies IT Contractor/Consultant 0403 53 12 71


<< | Thread Index | >> ]    [ << | Date Index | >> ]