|
Re: Is a NAT on PPTP interface a taboo subject ?: msg#00299security.firewalls.m0n0wall
Fournaux Nicolas wrote: Is a NAT on PPTP interface a taboo subject ?Your only real option is to change the subnets on one or the other side. IP was built with the assumption that *every* host has a unique IP and there are no provisions for cases where multiple machines are attempting to share IP space. In Windows it MIGHT be possible to do this using route table entries, try Assuming your "real" IP is 192.168.0.1 VPN IP you're assigned is 192.168.0.2, if you want to communicate with host 192.168.0.10 on the VPN, try the following command: route add 192.168.0.10 192.168.0.2 (Yes, this is routing a packet to yourself -- It tends to work though, in Windows anyway) In general IP renumbering (especially of a home LAN) isn't usually too painful, especially when compared to dealing with similar IP blocks -- For most home LANs you just change the IP on their router and reboot all the IPs and you're done. I'd recommend picking something relatively unique, 10/8 is good for this because the IP space is so huge (compared to 192.168/16), but you'll run into some networks that use subnet masks of 10/8 just because they can. Chances of colliding networks at 10.251.88/24 (or something equally random) is significantly lower then the often-used 192.168.0/8 ro 192.168.1/8 -- Just sit through this NRA meeting Marge, and if you still don't think guns are great then we'll argue some more. |
|
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| Previous by Date: | Re: Testing OpenVPN?: 00299, Fred Wright |
|---|---|
| Next by Date: | custom m0n0wall images how-to: 00299, Jean-Francois Theroux |
| Previous by Thread: | Is a NAT on PPTP interface a taboo subject ?i: 00299, Fournaux Nicolas |
| Next by Thread: | RE: Is a NAT on PPTP interface a taboo subject ?: 00299, Fournaux Nicolas |
| Indexes: | [Date] [Thread] [Top] [All Lists] |
| News | FAQ | advertise |