Hi,

On Mon, Jul 07, 2014 at 07:55:08AM -0700, pg0...@fastmail.fm wrote:
> On Mon, Jul 7, 2014, at 07:45 AM, Gert Doering wrote:
> > Nah.  This should not impair ping from the server through openvpn to the
> > LAN address of the client.  It's all "single machine left and right",
> > as far as the routing stacks are concerned.
> > 
> > Now, if ping to the LAN interface of the client works, but pinging to 
> > other hosts on the LAN fails, then we're into "forward=1" and "do you
> > have a route back?" land...
> 
> I've posted, above, the both the sysctls and the routes I have.

As I said: this was not the cause anyway.  It was in response to one of
the comments.

> Having mentioned there my suspected missing route, is that the  "do you
> have a route back?" you're referncing here?

I answered that: if you add "route" to openvpn's server config, you need
to restart the server (and if you want a client subnet to be routed via
the server tun, you need "route" in the main server config, not in the
ccd/ - only "iroute" goes to ccd, "route" goes to main config)

gert
-- 
USENET is *not* the non-clickable part of WWW!
                                                           //www.muc.de/~gert/
Gert Doering - Munich, Germany                             g...@greenie.muc.de
fax: +49-89-35655025                        g...@net.informatik.tu-muenchen.de

Attachment: pgptYeIQB0njn.pgp
Description: PGP signature

------------------------------------------------------------------------------
Open source business process management suite built on Java and Eclipse
Turn processes into business applications with Bonita BPM Community Edition
Quickly connect people, data, and systems into organized workflows
Winner of BOSSIE, CODIE, OW2 and Gartner awards
http://p.sf.net/sfu/Bonitasoft
_______________________________________________
Openvpn-users mailing list
Openvpn-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/openvpn-users

Reply via email to