All of lore.kernel.org
 help / color / mirror / Atom feed
From: "__ Radien__" <radien@zworg.com>
To: netfilter@lists.netfilter.org
Subject: PPTP FWD and/or NAT?
Date: Fri, 21 May 2004 21:12:27 -0700	[thread overview]
Message-ID: <29649.1085199147@zworg.com> (raw)

Dear All

  I just see the pptp_conntrack_nat helper module. I think it should
track the connection that get NATed for PPTP client access to outside

#

               pptp_call
           ---------------->     do NAT   ---------------->
(a client)------------------->[linux-box]------------------->(a vpn
server)

# Figure-1


  So I can just use one client to use vpn access to a server at a time.
  A question here: How about, e.g., using two client to access two
seperated vpn servers on the outside?

The second scenario:
#

               pptp_call
           ---------------->         route         --------------->
(a client)------------------->[routing-linux-box]------------------->(a
vpn server)

# Figure-2


  Let's assume another scenario, If we have some clients with valid_ip
that don't want to get NATed(I just filter in FWD). So what should I
accept in FWD if I want to grant their access to outside using PPTP
protocol, that they will never face any problem? Are there specific
ports to get open? or we should wait for another conntrack helper
module to pass pptp traffic?

at last
 PPTP FWD and/or NAT, which would be better?



                 reply	other threads:[~2004-05-22  4:12 UTC|newest]

Thread overview: [no followups] expand[flat|nested]  mbox.gz  Atom feed

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=29649.1085199147@zworg.com \
    --to=radien@zworg.com \
    --cc=netfilter@lists.netfilter.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.