News: This forum is now permanently frozen.
Pages: [1]
Topic: Static Route Question  (Read 1251 times)
« on: August 18, 2008, 01:48:46 »
Dafecat *
Posts: 7

Hi there,

I have two monowalls running over a network.  My hardware configuration consists of:
(Laptop1, monowall VPN1, Router1, Telecom Network, Router2, monowall VPN2, Laptop 2)

From Laptop1, I cannot see past monowall VPN2's WAN.  I cannot ping either the LAN setting on the VPN2 nor the Laptop2.
and Vice Versa, from Laptop2, I cannot see past monowall VPN1's WAN.

Laptop1:        192.168.100.100
VPN1 LAN:      192.168.100.253
VPN1 WAN:     192.168.23.253
Router1:          192.168.23.254
Router2:          192.168.53.254
VPN2 WAN:     192.168.53.253
VPN2 LAN:       192.168.101.253
Laptop2:         192.168.101.1

I have tried numerous static route settings.  Can anybody confirm what the correct static route should be?

I'm running two firewall walls, 1 for LAN and 1 for WAN.  Both rules are set to let everything through (Stars all the way).

« Last Edit: August 18, 2008, 01:50:46 by Dafecat »
« Reply #1 on: August 19, 2008, 04:23:58 »
Dafecat *
Posts: 7

Alright, I've got my VPN running now.  A reasonable achievement since I've never seen a VPN before and am only a PC gamer.

I ended up deleting all WAN firewall rules and pointing my static IP addresses through my IPsec tunnel using IPSec firewall rules with a pre-shared key authentication and Blowfish Hash encryption.

I've thrown in an aggregate tap and tried to wireshark any traffic outside my permitted IPsec firewall traffic and there's none to be seen.

A useful note, I found that I could not talk to two different IP addresses through my network, the HTTP port 80 protocol only liked talking to one IP address.  So I altered the port on my second IP address and presto - I could suddenly access both IP devices simultaneously.

I ended up posting 3 questions total here, but never got a reply to any.  So this site has really been of no use to me.  I found the m0n0wall handbook to be the only valuable resource required.   Sad

Has been an interesting experience, has taken a week of my spare time to discover how to do this.  Finally - Back to Battlefield 2142, Am about to clock the 1000 hour mark!
   Smiley
« Last Edit: August 19, 2008, 04:26:38 by Dafecat »
« Reply #2 on: August 19, 2008, 04:27:47 »
Dafecat *
Posts: 7

Oh, and I used no static routes.  For those interested.
 
Pages: [1]
 
 
Powered by SMF 1.1.20 | SMF © 2013, Simple Machines