Re: Multiple vpn tunnels
- From: Tauno Voipio <tauno.voipio@xxxxxxxxxxxxx>
- Date: Mon, 26 Mar 2007 14:16:06 GMT
said.abdel@xxxxxxxxx wrote:
Hello Folks,
I have the following situation:
VPN Tunnel 1 VPN Tunnel 2
81.129.39.9 ============ 59.20.93.49 ============= 93.48.28.27
Gateway A Gateway
B Gateway C
I need all clients coming from gateway C to be able to use the vpn
tunnel 1, so I have the following rule on Gateway B:
iptables -t nat -A POSTROUTING -s 93.48.28.27 -d 81.129.40.0/24 -o
eth0 -j MASQUERADE
But does not work, what I'm missing here?
Note: doing tcpdump host 93.48.28.27 on Gateway B and trying to ping
or telnet from Gateway C seems to work. I don't have access to Gateway
A, so I can't verify if the packets get to Gateway A.
I would really appreciate if you can help me fix this or find an other
job ;)
The masquerade may be an overkill, unless you need to limit
the visibility of the subnets to the other end of the tunnel.
Did you:
- tell gateway A that VPN tunnel 2 is reachable via VPN tunnel 1?
- tell VPN tunnel 2 end that gateway A and the nets behind it
are reachable via gateway C?
- enable forwarding at gateway C?
--
Tauno Voipio
tauno voipio (at) iki fi
.
- Follow-Ups:
- Re: Multiple vpn tunnels
- From: said . abdel
- Re: Multiple vpn tunnels
- References:
- Multiple vpn tunnels
- From: said . abdel
- Multiple vpn tunnels
- Prev by Date: Multiple vpn tunnels
- Next by Date: Re: Multiple vpn tunnels
- Previous by thread: Multiple vpn tunnels
- Next by thread: Re: Multiple vpn tunnels
- Index(es):
Relevant Pages
|