[OpenVPN home] [Date Prev] [Date Index] [Date Next]
[OpenVPN mailing lists] [Thread Prev] [Thread Index] [Thread Next]
Google
 
Web openvpn.net

Re: [Openvpn-users] Need 1.5 beta testers for *BSD, Linux 2.2, OS X


  • Subject: Re: [Openvpn-users] Need 1.5 beta testers for *BSD, Linux 2.2, OS X
  • From: "oyk" <oyk@xxxxxxxxxxx>
  • Date: Sun, 17 Aug 2003 16:41:15 +0800

Hi,James Yonan
   I want to setup a vpn between my home box(Windows xp + sp1) and my lab(the gateway and firewall box is FreeBSD4.8), but I failed.
I have setup a vpn successfully between two linux boxes(linux-2.4.21).
  Both my home box and my lab gateway are public IPs. 
Assume: 
  my home box ip is(1.2.3.4) and the lab gateway is (1.2.5.6), both boxes installed openvpn-1.5beta5. The tunnel IPs both my lab gateway
and my home box are 192.168.1.1 and 192.168.1.2.
Configuration:
  The home box(static_home.ovpn):
   remote 1.2.5.6
   dev tap
   dev-node my-tap
   secret key.txt
   ping 10
   verb 3
  I have modified the connection name to "my-tap", and set IP 192.168.1.2.
  myroute.bat: "route add 10.1.0.0 mask 255.255.254.0 192.168.1.2" (10.1.0.0/23 is my lab subnetwork)
  
  The lab gateway:
   remote 1.2.3.4   #I think it is not necessary, right? 
   ifconfig 192.168.1.1 192.168.1.2
   dev tun
   secret key.txt
   verb 3

  The two key.txt files are the same.
  
  Now, I run the openvpn on both box, it print normal information, but I can not ping 192.168.1.1/2. So I can not do anything.
  From winxp connection states, it displays the connection is ok.

Another test based on SSL/TLS, 
  My lab config:
   remote 1.2.3.4
   dev tun
   ifconfig 192.168.1.1 192.168.1.2
   tls-server
   dh dh1024.pem
   ca my-ca.crt
   cert office.crt
   key office.key
   proto tcp-server
   port  3000
   verb 3

 My home config:
   remote 1.2.5.6
   dev tap
   dev-node my-tap
   tls-server
   dh dh1024.pem
   ca my-ca.crt
   cert home.crt
   key home.key
   proto tcp-client
   port  3000
   verb 3

  The result is the same as the static method.

Best Regards
   Ouyang Kai



____________________________________________
Openvpn-users mailing list
Openvpn-users@xxxxxxxxxxxxxxxxxxxxx
https://lists.sourceforge.net/lists/listinfo/openvpn-users