Linux Netfilter discussions
 help / color / mirror / Atom feed
From: Jorge Davila <davila@nicaraguaopensource.com>
To: Johan ?hrn <johan_oern@hotmail.com>, netfilter@lists.netfilter.org
Subject: Re: Forward port to openvpn client
Date: Tue, 14 Aug 2007 16:19:43 -0600	[thread overview]
Message-ID: <web-80100806@bk1.webmaillogin.com> (raw)
In-Reply-To: <BAY113-F334B7FEC24D2CD5B0520D5E4DD0@phx.gbl>

Johan:

May you must ask in the openvpn mailing list.

Well, check this list:

1) You must have in your firewall an open path for the tcp traffic to the 
port 3739.

2) Check the openvpn configuration files to see if the references to the 
virtual addresses are ok

3) Check in your firewall if exists an open path to tun0 virtual interface.

Hope this helps,

Jorge Dávila.

On Tue, 14 Aug 2007 23:59:56 +0200
  "Johan Öhrn" <johan_oern@hotmail.com> wrote:
> Hi,
> 
> I want to forward port 3739 on my firewall (openvpn server) to an openvpn 
>client on port 3739.
> 
> This is my setup:
> 
> firewall:
> external interface: eth2
> external ip: 87.251.222.104
> openvpn interface: tun0
> 
> openvpn client:
> ip: 10.0.10.6
> 
> I can't figure out how to do the forward. I've tried everything I could 
>find on google and nothing seem to help. I can connect from the server to 
>the client on port 3739 so it's not a firewall issue on the client side. 
>Someone sugested that iptables might not be able to forward a port over an 
>ipsec interface.
> 
> Can someone tell me if what I'm trying to do is possible and if so, how?
> 
> / Johan
> 
> _________________________________________________________________
> Express yourself instantly with MSN Messenger! Download today it's FREE! 
>http://messenger.msn.click-url.com/go/onm00200471ave/direct/01/
> 
> 
> 

Jorge Isaac Davila Lopez
Nicaragua Open Source
+505 430 5462
davila@nicaraguaopensource.com


      reply	other threads:[~2007-08-14 22:19 UTC|newest]

Thread overview: 2+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2007-08-14 21:59 Forward port to openvpn client Johan =?unknown-8bit?q?=D6hrn?=
2007-08-14 22:19 ` Jorge Davila [this message]

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=web-80100806@bk1.webmaillogin.com \
    --to=davila@nicaraguaopensource.com \
    --cc=johan_oern@hotmail.com \
    --cc=netfilter@lists.netfilter.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox