[OpenVPN home] [Date Prev] [Date Index] [Date Next]
[OpenVPN mailing lists] [Thread Prev] [Thread Index] [Thread Next]
Google
 
Web openvpn.net

Fw: [Openvpn-users] Connecting RH 7.3 and Rh 9.0 using OpenVpn/TUN


  • Subject: Fw: [Openvpn-users] Connecting RH 7.3 and Rh 9.0 using OpenVpn/TUN
  • From: "System" <system@xxxxxxxxxxxxxxxxxxxxxxxxx>
  • Date: Mon, 4 Aug 2003 22:57:13 +0530

Any Help on this please?

> Tina,
>
> 1. what happens to box1 when you start box2?
> When i start the openvpn from box1 the it goes to the last statement and
> halts and nothing happens
>
> 2. try to use the IPs 10.0.0.1 and 10.0.0.2 for testing.
> I used 192.168.1.101 and 192.168.102
>
>
> 3. have you tried to do it on a local network? I mean, just take 2 hosts
on
> the same network to make some tests.
> No i dont have local network for Linux its windows and only on machine
with
> linux.
>
> These are my conf files on both the boxes
>
> Box1
> ====
> >  Box 1 ( lets say that it has the valid IP 66.xxx.xxx.123 )
> >  ========
> >  dev tun
> >  lport 5000
> >  verb 3
> >  ifconfig  192.168.1.101 192.168.1.102
> >  secret /root/certificates/temp.key
>
> Box2
> =========
> dev tun
> port 5000
> verb 3
> remote xx.xxx.xxx.123
> ifconfig 192.168.1.102 192.168.1.101
> secret /root/certificates/temp.key
>
> This is the last line i get when i start openvp from both the boxes:
>
> ===> Sat Aug  2 20:30:52 2003 9: /sbin/ifconfig tun0 192.168.1.101
> pointopoint 192.168.1.102 mtu 1256
>
> Now what should i do to test if the tunnel is working or not. should i
ping
> 192.168.1.101/102 from Box1 or Box2?
>
> See what my idea is :
>
> I have 5 ips on Box1 which are Static  one of the ip is assigned to a
domain
> let say xxx.xxx.xxx.1 , Now i want to put xxx.xxx.xxx.2 through VPN and
make
> it load a webpage on the Box2 where i have already configures apache for
> doing that.
>
> I know this is not actally the mailing list is for but even i m trying my
> best to get that done.
>
> Regards,
> Tina.
>
>
>
> Tácio
>
> On Friday 01 August 2003 12:27, System wrote:
> > Hi Tina,
> >
> > 1. Vtun is another solution which uses the net tun interface
> > 2. If you are little confused try first to set up a tunnel between 2
local
> > hosts.
> > 3. If not the config below might work for your setup.
> >
> >  Box 1 ( lets say that it has the valid IP 66.xxx.xxx.123 )
> >  ========
> >  dev tun
> >  lport 5000
> >  verb 3
> >  ifconfig  10.0.0.1 10.0.0.2
> >  secret /root/certificates/temp.key
> >
> >
> >  Box 2
> >  ==============
> >  dev tun
> >  rport 5000
> >  remote 66.xxx.xxx.123
> >  verb 3
> >  ifconfig  10.0.0.2 10.0.0.1
> >  secret /root/certificates/temp.key
> >
> > Start openvpn in box1, then in box 2.
> > Try to ping in the tun ip adresses.
> >
> > Hope this helps,
> > Tácio
> >
> > Thanks for the Reply. I have made changes as per your configs files and
> > here are the scenario please help.
> > When I start the openvp from Box1 the Status is :
> >
> > Box 1
> > ===============
> > [root@server certificates]# /usr/local/sbin/openvpn --config
openvpn.conf
> > Fri Aug  1 21:07:22 2003 0: OpenVPN 1.4.2 i686-pc-linux-gnu [SSL] built
on
> > Jul 29 2003
> > Fri Aug  1 21:07:22 2003 1: UDP link local (bound): [undef]:5000
> > Fri Aug  1 21:07:22 2003 2: UDP link remote: [undef]
> > Fri Aug  1 21:07:22 2003 3: Static Encrypt: Cipher 'BF-CBC' initialized
> > with 128 bit key
> > Fri Aug  1 21:07:22 2003 4: Static Encrypt: Using 160 bit message digest
> > 'SHA1' for HMAC authentication
> > Fri Aug  1 21:07:22 2003 5: Static Decrypt: Cipher 'BF-CBC' initialized
> > with 128 bit key
> > Fri Aug  1 21:07:22 2003 6: Static Decrypt: Using 160 bit message digest
> > 'SHA1' for HMAC authentication
> > Fri Aug  1 21:07:22 2003 7: Data Channel MTU parms [ udp_mtu=1300
> > extra_frame=44 extra_buffer=0 extra_tun=0 dynamic = [
> > mtu_min_initial=MTU_INITIAL_UNDEF mtu_max_initial=MTU_INITIAL_UNDEF
> > mtu_initial=MTU_SET_TO_MAX mtu_min=144 mtu_max=1300 mtu=1300 ]]
> > Fri Aug  1 21:07:22 2003 8: TUN/TAP device tun0 opened
> > Fri Aug  1 21:07:22 2003 9: /sbin/ifconfig tun0 192.168.1.101
pointopoint
> > 192.168.1.102 mtu 1256
> >
> > After this i dont get the prompt it just stops here on the both the
> > machines.
> >
> > Box2
> > ===========================
> > [root@localhost certificates]# /usr/local/sbin/openvpn --config
> > openvpn.conf Fri Aug  1 11:15:21 2003 0: OpenVPN 1.4.2 i686-pc-linux-gnu
> > [SSL] built on Aug  1 2003
> > Fri Aug  1 11:15:21 2003 1: UDP link local (bound): [undef]:5000
> > Fri Aug  1 11:15:21 2003 2: UDP link remote: 66.xxx.xxx.123:5000
> > Fri Aug  1 11:15:21 2003 3: Static Encrypt: Cipher 'BF-CBC' initialized
> > with 128 bit key
> > Fri Aug  1 11:15:21 2003 4: Static Encrypt: Using 160 bit message digest
> > 'SHA1' for HMAC authentication
> > Fri Aug  1 11:15:21 2003 5: Static Decrypt: Cipher 'BF-CBC' initialized
> > with 128 bit key
> > Fri Aug  1 11:15:21 2003 6: Static Decrypt: Using 160 bit message digest
> > 'SHA1' for HMAC authentication
> > Fri Aug  1 11:15:21 2003 7: Data Channel MTU parms [ udp_mtu=1300
> > extra_frame=44 extra_buffer=0 extra_tun=0 dynamic = [
> > mtu_min_initial=MTU_INITIAL_UNDEF mtu_max_initial=MTU_INITIAL_UNDEF
> > mtu_initial=MTU_SET_TO_MAX mtu_min=144 mtu_max=1300 mtu=1300 ]]
> > Fri Aug  1 11:15:21 2003 8: TUN/TAP device tun0 opened
> > Fri Aug  1 11:15:21 2003 9: /sbin/ifconfig tun0 192.168.1.102
pointopoint
> > 192.168.1.101 mtu 1256
> >
> > Now when i take these both the processse to background and ping from
Box1
> >
> > [root@server certificates]# ping 192.168.1.102
> > PING 192.168.1.102 (192.168.1.102) from 192.168.1.101 : 56(84) bytes of
> > data.
> >
> > Here it stops!!
> >
> > I am doing something wrong!!
> >
> > Regards,
> > Tina.
> >
> >  01 August 2003 07:41, System wrote:
> > > > Hello All,
> > > >
> > > > I am a NewBie to openvpn and Tunnel, But i have know how of
> Networking.
> > > >
> > > > I want to setup a tunnel between two linux boxes.
> > > > Scenario:
> > > > Box 1 : Redhat 7.3 machine which is a webhosting server with a
Static
> >
> > IP.
> >
> > > > Box 2 : Redhat 9.0 machine which is on a DSL connection and a
Dynamic
> >
> > Ip.
> >
> > > > I have compiled openvpn without any compression, I also compiled
vTun
> >
> > and
> >
> > > > both are on Box1 i haven't done anything on the Redhat 9.0 box.
> > > >
> > > > Can Anyone please put me on the correct path, Any howto is
available.
> I
> > >
> > > have
> > >
> > > > googled and also went to the openvpn site but that how is out of my
> >
> > head.
> >
> > > If
> > >
> > > > any one can please help me.
> > >
> > > I have compiled openvpn and vtun on both the Machines Now I have a
> >
> > question
> >
> > > please any body anwser this:
> > >
> > > Box 1 Ip Address : 66.xxx.xxxx.124/127 this is Static pool of IP
> > > Box 2 Ip Address : 192.168.1.101 (local) and DSL(24.xxx.xxx.10  this
is
> > > Dynamic)
> > >
> > > I have use the SSH Keys for the same and also configured for
> Passwordless
> > > Authentication.
> > > These are my openvpn.conf files
> > > Box 1
> > > ========
> > > dev tun
> > > port 5000
> > > #comp-lzo
> > > #ping 15
> > > verb 3
> > > #shaper 1000
> > > remote 24.xxx.xxx.145
> > > ifconfig  66.xxx.xxx.123 66.xxx.xxx.124
> > > #up /home/openvpn/bin/ip-up.sh
> > > #down /home/openvpn/bin/ip-down.sh
> > >
> > > #Using Pre-Shared Secret Key.
> > > secret /root/certificates/temp.key
> > >
> > > Box 2
> > > ==============
> > > dev tun
> > > port 5000
> > > #comp-lzo
> > > #ping 15
> > > verb 3
> > > #shaper 1000
> > > remote 66.xxx.xxx.123
> > > ifconfig  192.168.1.101 192.168.1.102
> > > #up /home/openvpn/bin/ip-up.sh
> > > #down /home/openvpn/bin/ip-down.sh
> > >
> > > #Using Pre-Shared Secret Key.
> > > secret /root/certificates/temp.key
> > >
> > > The above example is found from Google and from openvpn site.
> > > I don;t know what these two file should contain i dont have them and
> that
> > > is why they are commented.
> > > #up /home/openvpn/bin/ip-up.sh
> > > #down /home/openvpn/bin/ip-down.sh
> > >
> > > Now when i start
> > > openvpn --config openvpn.conf from both the machines They both goes to
> > > the halt stage and nothing happens after.
> > >
> > > I just want to know what ips should and the seuquence i have a
confusion
> > > there .
> > > Can anybody please correct it  the conf file by replacing them to the
> >
> > Right
> >
> > > place.
> > >
> > > Regards,
> > > Tina.
> > >
> > >
> > >
> > >
> > > -------------------------------------------------------
> > > This SF.Net email sponsored by: Free pre-built ASP.NET sites including
> > > Data Reports, E-commerce, Portals, and Forums are available now.
> > > Download today and enter to win an XBOX or Visual Studio .NET.
> >
> >
>
http://aspnet.click-url.com/go/psa00100003ave/direct;at.aspnet_072303_01/01
> >
> > > _______________________________________________
> > > Openvpn-users mailing list
> > > Openvpn-users@xxxxxxxxxxxxxxxxxxxxx
> > > https://lists.sourceforge.net/lists/listinfo/openvpn-users
> >
> > -------------------------------------------------------
> > This SF.Net email sponsored by: Free pre-built ASP.NET sites including
> > Data Reports, E-commerce, Portals, and Forums are available now.
> > Download today and enter to win an XBOX or Visual Studio .NET.
> >
>
http://aspnet.click-url.com/go/psa00100003ave/direct;at.aspnet_072303_01/01
> > _______________________________________________
> > Openvpn-users mailing list
> > Openvpn-users@xxxxxxxxxxxxxxxxxxxxx
> > https://lists.sourceforge.net/lists/listinfo/openvpn-users
>
>
>
>
>
>
>
>
> -------------------------------------------------------
> This SF.Net email sponsored by: Free pre-built ASP.NET sites including
> Data Reports, E-commerce, Portals, and Forums are available now.
> Download today and enter to win an XBOX or Visual Studio .NET.
>
http://aspnet.click-url.com/go/psa00100003ave/direct;at.aspnet_072303_01/01
> _______________________________________________
> Openvpn-users mailing list
> Openvpn-users@xxxxxxxxxxxxxxxxxxxxx
> https://lists.sourceforge.net/lists/listinfo/openvpn-users
>
>
>



____________________________________________
Openvpn-users mailing list
Openvpn-users@xxxxxxxxxxxxxxxxxxxxx
https://lists.sourceforge.net/lists/listinfo/openvpn-users