Hi, On Mon, Jul 07, 2014 at 07:55:08AM -0700, pg0...@fastmail.fm wrote: > On Mon, Jul 7, 2014, at 07:45 AM, Gert Doering wrote: > > Nah. This should not impair ping from the server through openvpn to the > > LAN address of the client. It's all "single machine left and right", > > as far as the routing stacks are concerned. > > > > Now, if ping to the LAN interface of the client works, but pinging to > > other hosts on the LAN fails, then we're into "forward=1" and "do you > > have a route back?" land... > > I've posted, above, the both the sysctls and the routes I have.
As I said: this was not the cause anyway. It was in response to one of the comments. > Having mentioned there my suspected missing route, is that the "do you > have a route back?" you're referncing here? I answered that: if you add "route" to openvpn's server config, you need to restart the server (and if you want a client subnet to be routed via the server tun, you need "route" in the main server config, not in the ccd/ - only "iroute" goes to ccd, "route" goes to main config) gert -- USENET is *not* the non-clickable part of WWW! //www.muc.de/~gert/ Gert Doering - Munich, Germany g...@greenie.muc.de fax: +49-89-35655025 g...@net.informatik.tu-muenchen.de
pgptYeIQB0njn.pgp
Description: PGP signature
------------------------------------------------------------------------------ Open source business process management suite built on Java and Eclipse Turn processes into business applications with Bonita BPM Community Edition Quickly connect people, data, and systems into organized workflows Winner of BOSSIE, CODIE, OW2 and Gartner awards http://p.sf.net/sfu/Bonitasoft
_______________________________________________ Openvpn-users mailing list Openvpn-users@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/openvpn-users