|
|
We would like to set up a branch office VPN connection between two sites. One endpoint is a Linux firewall with an Internet-routable IP, the other endpoint is a Linux server behind a NAT firewall and has an RFC1918 IP address. We would hope that this would work correctly if the connection is initiated from the Linux server behind the NAT box to the other firewall with the public address; return traffic would simply be routed back to the NAT box and translated to the server again. But, from what I can tell from the openvpn startup examples, each endpoint must be able to connect to the other directly (specified with the "--remote" argument). Since one endpoint is hidden behind the NAT firewall on a private network, this doesn't fit and we would need to move this endpoint into a DMZ or similar publicly-routable location. Can someone please confirm this one way or the other? -- DS ------------------------------------------------------- The SF.Net email is sponsored by: Beat the post-holiday blues Get a FREE limited edition SourceForge.net t-shirt from ThinkGeek. It's fun and FREE -- well, almost....http://www.thinkgeek.com/sfshirt _______________________________________________ Openvpn-users mailing list Openvpn-users@xxxxxxxxxxxxxxxxxxxxx https://lists.sourceforge.net/lists/listinfo/openvpn-users Warning: require_once(../../../archive_common.php) [function.require-once]: failed to open stream: No such file or directory in /home/openvpn/domains/openvpn.net/public_html/archive/openvpn-users/2005-01/msg00040.html on line 196 Fatal error: require_once() [function.require]: Failed opening required '../../../archive_common.php' (include_path='/usr/local/lib/php') in /home/openvpn/domains/openvpn.net/public_html/archive/openvpn-users/2005-01/msg00040.html on line 196 |