Re: ""how can i allow IP protocol 47 "" on iptables to connet a pptpVPN server.

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 




----- Original Message ----- From: "Pascal Hambourg" <pascal.mail@xxxxxxxxxxxxxxx>
To: <netfilter@xxxxxxxxxxxxxxxxxxx>
Sent: Wednesday, June 20, 2007 4:42 AM
Subject: Re: ""how can i allow IP protocol 47 "" on iptables to connet a pptpVPN server.


rajeev.sekhar a écrit :

I configured VPN befind the firewall, with the rules given by Pascal Hambourg.

But when i connect more than one client, the old client connection get terminated.

Did you test from clients with different public IP addresses (not
masqueraded behind the same NAT device) ?
AFAIK the generic connection tracking and NAT should handle properly
multiple GRE tunnels between a masqueraded server and multiple clients,
provided that the server sees a unique IP address for each client so
each tunnel creates a unique conntrack/NAT tuple.

Ohh yes you are right,
I tried to connect multiple client from the same IP address, I will try from different IPs & let you know.

Thanks
Rajeev sekhar
----------------------------------------------
Confidentiality Note: This e-mail message and any attachments to it are
intended only for the named recipients and may contain legally privileged
and/or confidential information. If you are not one of the intended
recipients, please notify the sender and do not duplicate or forward this
e-mail message and immediately delete it from your computer.
----------------------------------------------


[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux