----- Original Message -----
From: "Pascal Hambourg" <pascal.mail@xxxxxxxxxxxxxxx>
To: <netfilter@xxxxxxxxxxxxxxxxxxx>
Sent: Wednesday, June 20, 2007 4:42 AM
Subject: Re: ""how can i allow IP protocol 47 "" on iptables to connet a
pptpVPN server.
rajeev.sekhar a écrit :
I configured VPN befind the firewall, with the rules given by Pascal
Hambourg.
But when i connect more than one client, the old client connection get
terminated.
Did you test from clients with different public IP addresses (not
masqueraded behind the same NAT device) ?
AFAIK the generic connection tracking and NAT should handle properly
multiple GRE tunnels between a masqueraded server and multiple clients,
provided that the server sees a unique IP address for each client so
each tunnel creates a unique conntrack/NAT tuple.
Ohh yes you are right,
I tried to connect multiple client from the same IP address, I will try from
different IPs & let you know.
Thanks
Rajeev sekhar
----------------------------------------------
Confidentiality Note: This e-mail message and any attachments to it are
intended only for the named recipients and may contain legally privileged
and/or confidential information. If you are not one of the intended
recipients, please notify the sender and do not duplicate or forward this
e-mail message and immediately delete it from your computer.
----------------------------------------------