All of lore.kernel.org
 help / color / mirror / Atom feed
* [Fwd: Re: [LARTC] custom route for forwarded traffic]
@ 2007-10-31  2:59 Mohan Sundaram
  0 siblings, 0 replies; only message in thread
From: Mohan Sundaram @ 2007-10-31  2:59 UTC (permalink / raw)
  To: lartc

Aleksander Kamenik wrote:
> Hi,
> If I add a rule to the main routing table in the users network's 
> firewall for servers network's external IP to go through the VPN, I will 
> break the VPN connection (kind of like the chicken and egg problem).
> 
This true only for cases like L3 IPSec where traffic to be encrypted is
based on src/dst IP combo. If you had a VPN virtual interface, this
should not be a problem. You can choose to route traffic of your choice.
Good examples is OpenVPN and L2 IPSec.

Mohan

_______________________________________________
LARTC mailing list
LARTC@mailman.ds9a.nl
http://mailman.ds9a.nl/cgi-bin/mailman/listinfo/lartc

^ permalink raw reply	[flat|nested] only message in thread

only message in thread, other threads:[~2007-10-31  2:59 UTC | newest]

Thread overview: (only message) (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2007-10-31  2:59 [Fwd: Re: [LARTC] custom route for forwarded traffic] Mohan Sundaram

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.