News
:
This forum is now permanently frozen.
m0n0wall Forum
>
m0n0wall Support (English)
>
Services
Topic: m0n0wall nameresolution with IPSec tunnel
Pages: [
1
]
Topic: m0n0wall nameresolution with IPSec tunnel (Read 4135 times)
m0n0wall nameresolution with IPSec tunnel
« on: April 01, 2007, 13:22:15 »
herrstarr
Posts: 8
Hi
I set up an IPSec Tunnel between two monowall'ed sites. which is working great btw.
Now there is one little thing I couldn't work aout yet.
Name resolution doesn't work
(I can access all services by IP)
my Setup
Site 1: Domain: my.domain
monowall v.1.23: IP 192.168.1.1
specified authoritative DNS 192.168.9.1 for other.domain
Site 2: Domain: other.domain
monowall v.1.22: IP 192.168.9.1
specified auth. DNS 192.168.1.1 for my.domain
when querying dns for an IP(via FQDN) in the other domain I get a timeout.
Any clues what might be wrong?
thanks in advance
hs
Re: m0n0wall nameresolution with IPSec tunnel
« Reply #1 on: April 01, 2007, 20:20:10 »
cmb
Posts: 851
You need a static route as described in the SNMP over VPN FAQ.
http://doc.m0n0.ch/handbook/faq-snmpovervpn.html
Re: m0n0wall nameresolution with IPSec tunnel
« Reply #2 on: April 01, 2007, 22:39:23 »
herrstarr
Posts: 8
ok tried that but it still doesn't work.
ping gives me
Ping output:
PING 192.168.9.1 (192.168.9.1) from 84.112.32.63: 56 data bytes
36 bytes from localhost (127.0.0.1): Time to live exceeded
Vr HL TOS Len ID Flg off TTL Pro cks Src Dst
4 5 00 5400 6e47 0 0000 01 01 0d0a 84.112.32.63 192.168.9.1
my new Setup
Site 1: Domain: my.domain
monowall v.1.23: IP 192.168.1.1
specified authoritative DNS 192.168.9.1 for other.domain
static route: LAN, Net 192.168.9.0/24, Gateway 192.168.1.1
Site 2: Domain: other.domain
monowall v.1.22: IP 192.168.9.1
specified auth. DNS 192.168.1.1 for my.domain
static route: LAN, Net 192.168.1.0/24, Gateway 192.168.9.1
thanks
hs
Re: m0n0wall nameresolution with IPSec tunnel
« Reply #3 on: April 01, 2007, 22:55:11 »
herrstarr
Posts: 8
sorry actually this config works great.
should have pinged via the right interface for the testing
thx
consider the problem solved
Pages: [
1
]