|
|
Il giorno Wed, 6 Jun 2007 12:10:45 +0200
Ernesto Franchini <ernesto.franchini@xxxxxxxxxxx> ha scritto:
<snip>
> now the vpn client can resolve names contacting the DNS server i
> "pushed" (192.168.200.95) but any other communication get dropped.
> the only passing packets are those from/to the DNS (i can see in the
> firewall log the packets on port 53 being accepted and ping packets
> being dropped)
<snip>
well, since the rejection was originated by a packet "state" problem, i
used a stateless rule on the firewall to allow vpn packets.
everything is working, at last.
--
Ernesto Franchini <ernesto.franchini@xxxxxxxxxxx>
Linux System Administrator :: IT Office
Prodigit SRL _
Via Mecenate 76/9 - 20138 Milano ASCII ribbon campaign ( )
Tel. 02/509081 - Fax. 02/50908080 - against HTML email X
www.prodigit.it & vCards / \
"The grabbing hands grab all they can, everything counts in large
amounts"
Attachment:
signature.asc
Description: PGP signature
|