Tom Eastep wrote:
> Scott Ruckh wrote:
>> This is what you said Tom Eastep
>>> Scott Ruckh wrote:
>>>> If a full shorewall report is needed, please let me know
>>> A full report is needed if you would like me to look at your problem.
>>>
>>> -Tom
>>> --
>> Ok, thanks.  Attached is compressed output from a shorewall dump
>> (unmodified).
>>
>> I believe the details from the original message explain the problem.  A
>> VPN client (openvpn), appears to have difficulty talking to devices on the
>> openvpn subnet including DNS queries.
> 
> You apparently don't have LOGFILE set correctly to capture log messages in
> the dump output (it's currently set to /var/log/messages). Please forward a
> copy of one of the 'all2all' messages mentioned in your original post.

Also, this dump was captured when there was no VPN client even connected. So
when we see the 'all2all' message, we will still be guessing about what the
actual IP configuration on your firewall is at the time of these failures.

-Tom
-- 
Tom Eastep    \ Nothing is foolproof to a sufficiently talented fool
Shoreline,     \ http://shorewall.net
Washington USA  \ [EMAIL PROTECTED]
PGP Public Key   \ https://lists.shorewall.net/teastep.pgp.key

Attachment: signature.asc
Description: OpenPGP digital signature

-------------------------------------------------------------------------
This SF.net email is sponsored by DB2 Express
Download DB2 Express C - the FREE version of DB2 express and take
control of your XML. No limits. Just data. Click to get it now.
http://sourceforge.net/powerbar/db2/
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to