Re: Split tunnelling

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On 08/22/2018 08:59 AM, Patrick O'Callaghan wrote:
This is the routing table with the VPN enabled (the virbr stuff is from
a VM, not relevant here):

(I rearranged the table.)

$ route
Kernel IP routing table
Destination     Gateway         Genmask         Flags Metric Ref    Use Iface
0.0.0.0         10.87.0.53      128.0.0.0       UG    0      0        0 tun0
128.0.0.0       10.87.0.53      128.0.0.0       UG    0      0        0 tun0

This is very weird routing! The first one matches any address that doesn't have the highest bit set and the second one matches any address that does. Together they match everything.

10.87.0.1       10.87.0.53      255.255.255.255 UGH   0      0        0 tun0
10.87.0.53      0.0.0.0         255.255.255.255 UH    0      0        0 tun0

These are strange too.

default         ZyXEL-router    0.0.0.0         UG    100    0        0 enp3s0
45.56.130.4     ZyXEL-router    255.255.255.255 UGH   0      0        0 enp3s0
192.168.1.0     0.0.0.0         255.255.255.0   U     100    0        0 enp3s0
192.168.122.0   0.0.0.0         255.255.255.0   U     0      0        0 virbr0

I would suggest trying to get your own openvpn config working if possible. There might be a script that the binary uses to configure the routing, see if you can find that. Try running "strings" on the binary. You could also just create your own script that starts up the VPN and then modifies the routing table. Remove those first two entries and then add entries for whatever range you do want to go over the VPN.
_______________________________________________
users mailing list -- users@xxxxxxxxxxxxxxxxxxxxxxx
To unsubscribe send an email to users-leave@xxxxxxxxxxxxxxxxxxxxxxx
Fedora Code of Conduct: https://getfedora.org/code-of-conduct.html
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/users@xxxxxxxxxxxxxxxxxxxxxxx/message/L4CESMR4NGXT4JHXKTOWLVLWPJROQOWO/



[Index of Archives]     [Older Fedora Users]     [Fedora Announce]     [Fedora Package Announce]     [EPEL Announce]     [EPEL Devel]     [Fedora Magazine]     [Fedora Summer Coding]     [Fedora Laptop]     [Fedora Cloud]     [Fedora Advisory Board]     [Fedora Education]     [Fedora Security]     [Fedora Scitech]     [Fedora Robotics]     [Fedora Infrastructure]     [Fedora Websites]     [Anaconda Devel]     [Fedora Devel Java]     [Fedora Desktop]     [Fedora Fonts]     [Fedora Marketing]     [Fedora Management Tools]     [Fedora Mentors]     [Fedora Package Review]     [Fedora R Devel]     [Fedora PHP Devel]     [Kickstart]     [Fedora Music]     [Fedora Packaging]     [Fedora SELinux]     [Fedora Legal]     [Fedora Kernel]     [Fedora OCaml]     [Coolkey]     [Virtualization Tools]     [ET Management Tools]     [Yum Users]     [Yosemite News]     [Gnome Users]     [KDE Users]     [Fedora Art]     [Fedora Docs]     [Fedora Sparc]     [Libvirt Users]     [Fedora ARM]

  Powered by Linux