Portál AbcLinuxu, 12. května 2025 11:19
dev tap0 ifconfig 10.123.15.2 255.255.255.0 secret static.key log-append /var/log/openvpn status /var/run/openvpn/vpn.status 10 user root group root comp-lzo verb 5a na clientu mam tohle
dev tap0 remote gw.americanway.cz ifconfig 10.123.15.50 255.255.255.0 secret static.key ping 10 comp-lzo verb 5 mute 10 user root group rootSpojit se to spoji, ale to je vse.
Klient Server Vnitrni sit Vnitrni sit ################ ################ #192.168.1.0/24# #10.123.15.0/24# ################ ################ vpn vpn ############# ############# #10.123.16.2# #10.123.16.2# ############# ############# Tak a na klientovy je tohle nastaveny v openvpn: dev tap0 remote 62.77.89.243 ifconfig 10.123.16.2 255.255.255.0 route 10.123.15.0 255.255.255.0 secret static.key ping 10 comp-lzo verb 3 mute 10 user root group root a na serveru mam nastaveny tohle: dev tap0 ifconfig 10.123.16.1 255.255.255.0 up ./server.up secret static.key log-append /var/log/openvpn status /var/run/openvpn/vpn.status 10 push "route 10.123.15.0 255.255.255.0" push "dhcp-option DOMAIN awg.hq" push "dhcp-option DNS 10.123.16.1" user root group root comp-lzo verb 3Ve firewallu mam povoleny veskerou komunikaci s VPN jak do FW tak to LOC. V Shorewallu mam povoleny IP FORWARDING Uz opravdu nevim co je spatne. :(( Nikdy jsem tohle nedelal a doufam ze uz taky delat nebudu. :(
=========================================================================== Aktivní směrování: Cíl v síti Síťová maska Brána Rozhraní Metrika 0.0.0.0 0.0.0.0 10.123.16.1 10.123.16.2 30 0.0.0.0 0.0.0.0 192.168.1.250 192.168.1.18 20 10.123.15.0 255.255.255.0 10.123.16.1 10.123.16.2 1 10.123.16.0 255.255.255.0 10.123.16.2 10.123.16.2 30 10.123.16.2 255.255.255.255 127.0.0.1 127.0.0.1 30 10.255.255.255 255.255.255.255 10.123.16.2 10.123.16.2 30 127.0.0.0 255.0.0.0 127.0.0.1 127.0.0.1 1 172.16.37.0 255.255.255.0 172.16.37.1 172.16.37.1 20 172.16.37.1 255.255.255.255 127.0.0.1 127.0.0.1 20 172.16.93.0 255.255.255.0 172.16.93.1 172.16.93.1 20 172.16.93.1 255.255.255.255 127.0.0.1 127.0.0.1 20 172.16.255.255 255.255.255.255 172.16.37.1 172.16.37.1 20 172.16.255.255 255.255.255.255 172.16.93.1 172.16.93.1 20 192.168.0.0 255.255.0.0 192.168.1.18 192.168.1.18 20 192.168.1.18 255.255.255.255 127.0.0.1 127.0.0.1 20 192.168.1.255 255.255.255.255 192.168.1.18 192.168.1.18 20 224.0.0.0 240.0.0.0 10.123.16.2 10.123.16.2 30 224.0.0.0 240.0.0.0 172.16.37.1 172.16.37.1 20 224.0.0.0 240.0.0.0 172.16.93.1 172.16.93.1 20 224.0.0.0 240.0.0.0 192.168.1.18 192.168.1.18 20 255.255.255.255 255.255.255.255 10.123.16.2 10.123.16.2 1 255.255.255.255 255.255.255.255 172.16.37.1 172.16.37.1 1 255.255.255.255 255.255.255.255 172.16.93.1 172.16.93.1 1 255.255.255.255 255.255.255.255 192.168.1.18 192.168.1.18 1 Výchozí brána: 192.168.1.250 =========================================================================== Trvalé trasy: ŽádnéA na serveru je toto
Kernel IP routing table Destination Gateway Genmask Flags Metric Ref Use Iface 62.77.89.240 * 255.255.255.248 U 0 0 0 eth0 10.123.16.0 * 255.255.255.0 U 0 0 0 tap0 192.168.1.0 10.123.16.2 255.255.255.0 UG 0 0 0 tap0 10.123.15.0 * 255.255.255.0 U 0 0 0 eth1 169.254.0.0 * 255.255.0.0 U 0 0 0 eth1 default 62.77.89.241 0.0.0.0 UG 0 0 0 eth0
route change 10.123.15.0 mask 255.255.255.0 10.123.15.3
Ale nie som si istý Mam jeste jeden problem. VPN bezi na siti 10.123.16.0/24 a vnitrni sit za serverem je 10.123.15.0/24 z toho server ma IP 10.123.15.3. Na IP serveru uz se v pohode dopingnu, ale na ostatni PC v te same siti ne. :( Nevite cim by to mohlo byt?? Uz si s tim lamu hlavu nekolik dni. :( DekujiNevyzna sa v tom ani diva svina. Mne openvpn isla v podstate na prvy pokus. Ked sa spoji, tak staci na klienta pridat routu do siete, kde je server. Neviem co je na tom take zlozite.
Tiskni
Sdílej:
ISSN 1214-1267, (c) 1999-2007 Stickfish s.r.o.