Re: Change local Address of ppp link

From: Clifford Kite (kite_at_see.signature.id)
Date: 07/01/05


Date: Fri, 1 Jul 2005 12:43:51 -0500

Stephan <sho@relinux.de> wrote:
> Hi, Dan and Clifford,

> thanx for your reply. In fact, I read the man page and lots of other
> documents ans googled for a answer, too.

> Unfortunatelly, this option does only work if the peer accepts the
> given local address. Our peer doesn't.

> That's the reason that we need to translate the address somehow. Could
> that possible be done with iptables?

I only learned enough about iptables to modify a firewall for my needs
and don't have a good answer to that question. There may be a simple
way, a horrible way, or no way (suitable for your purpose) to "translate
the address." Perhaps someone else will volunteer...

Stephan's suggestion about using a different subnet for the VPN seems
reasonable.

The easiest thing would be to use a subnet of 168.192.0.0-168.192.255.0
or 172.16.0.0-172.31.0.0 for the VPN. Or if there is a compelling reason
to use a subnet of 10.0.0.0-255.255.255 for the VPN then try to find out
whether the provider uses a smaller, and fixed, subnet (i.e., not /8)
of that range to provide service for you and assign a different subnet
to the VPN.

-- 
Clifford Kite                Email: "echo xvgr_yvahk-ccc@ri1.arg|rot13"


Relevant Pages

  • Re: VPN and Routing in one box
    ... Any suggestions for a simple router that will do this? ... Packets originate in Subnet 1, ... The VPN is the first hop. ... should be sent through the VPN gateway at 192.168.2.0 and you ...
    (comp.dcom.vpn)
  • Re: VPN and Routing in one box
    ... Packets originate in Subnet 1, ... The VPN is the first hop. ... When packets arrive via the VPN at Subnet 2, they have to be routed to a particular router / IP address on Subnet 2, which is the next hop in order to be futher routed to Subnet 3. ...
    (comp.dcom.vpn)
  • Win2k Ras/VPN and a SCO Unix Machine and some difficulty getting to the SCO Machine [LONG]
    ... Unix 5.0.7 system in conjunction with a Win2k System providing VPN access. ... The bulk of their processing is done via dumb terminal connections but they ... LAN but they are on the same subnet. ... The entire network is currently setup to run on the 192.168.1. ...
    (comp.unix.sco.misc)
  • Re: VPN Issue
    ... I have read some articles about this subnet issue, so I know what you mean. ... I then connect to my network using the VPN connectoid. ... a new network adapter in the client directly to one in the server. ... But ONLY if I add in the domain.local DNS suffix to the VPN connection. ...
    (microsoft.public.windows.server.sbs)
  • Re: Win2k Ras/VPN and a SCO Unix Machine and some difficulty getting to the SCO Machine [LONG]
    ... Win2k System providing VPN access. ... DNS functions. ... WAN and one as LAN but they are on the same subnet (as you will ... Box anyways) but our access to the SCO Unix box will fail while ...
    (comp.unix.sco.misc)