From: Brent Clark <brentgclarklist@gmail.com>
To: 'Mail List - Netfilter' <netfilter@vger.kernel.org>
Subject: connect to openvpn but multipath routing used.
Date: Tue, 23 Sep 2008 17:34:58 +0200 [thread overview]
Message-ID: <48D90CA2.8090208@gmail.com> (raw)
Hi
For the likes of me I cant get my mind around this.
I got two DSL (two separate ISP's) lines that I use multipath routing on
(works like a bomb, i.e. from in the LAN out to internet). But what I
want to do is have it that I can randomly connect to my openvpn (sits
and configured on my router / fw), via either ISP.
Basically in the openvpn conf file I would like to have
remote-random
remote oneisp.dyndns.org (fixed ip)
remote anotherisp.dyndns.org (dynamic ip)
Currently I have openvpn working through the one ISP (fixed ip).
For my tests I have being trying :
iptables -t filter -A INPUT -p udp --dport 1194 -m state --state NEW -j
ACCEPT
For output (please bare with me on this)
iptables -t filter -A OUTPUT -m state --state NEW -j ACCEPT
For marking I have been trying and trying to get traffic out the dynamic
ISP.
iptables -t mangle -A OUTPUT -p udp --sport 1194 -j MARK --set-mark 0x1
iptables -t mangle -A POSTROUTING -p udp --sport 1194 -j MARK --set-mark 0x1
The stranges thing that I saw was that on using the last two of the
above rules, is that with using tshark, that i was seeing that ip
address of my primary interface (fixed ip address), as opposed to that
of the dynamic ip.
If anyone can help it would be appreciate.
Kind Regards
Brent Clark
next reply other threads:[~2008-09-23 15:34 UTC|newest]
Thread overview: 2+ messages / expand[flat|nested] mbox.gz Atom feed top
2008-09-23 15:34 Brent Clark [this message]
2008-09-23 20:58 ` connect to openvpn but multipath routing used Brian Austin - Standard Universal
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=48D90CA2.8090208@gmail.com \
--to=brentgclarklist@gmail.com \
--cc=netfilter@vger.kernel.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox