Greetings to the list
I've used shorewall now for several years with reasonable success,
employing linux servers in small businesses for my clients here in New
Zealand.
I've managed to so far avoid the need for microsoft clients to vpn into
their work networks by supplying software such as winscp which uses ssh
very happily.
A.
With voip convergence however, I find myself now dumped in the situation
where the phone company assumed much about the nature and layout of one
of my clients networks and is pushing for the ceo to have a vpn so they
can install their softphone at his house.
I'm struggling to find a good howto, have read Toms guides on pptp which
I have achieved authentication but not much network traffic. Toms guides
also say "Unmaintained" and I wonder, has the world found a better way?
IPSEC is touted as difficult to configure, PPTP is not "secure enough"
and maybe has problems with broadcast packets?
Which VPN technology should I use with shorewall? The phone company
wants to come in with a cisco vpn router, I think I will have to
reconfigure the whole network if that's the case.
My config is basically:
ADSL ----- eth1 -|Shorewall on server W|eth0-lan - win clients,
| |running samba, apache| \___ Printer
| |-dnsmasq, ubuntu 6.06| \__|Phone company pc
| |incl vmail softwr
|----|Server F running mail|
DNat on W gives access to a win2003 terminal server B also on the lan
ADSL is a nokia 2211 running ppp0atm.
Phone company pc is just XP with their admin package and voicemail
storage, the voip phones are only for the remote office, all their other
phone traffic is simple digital directly wired phones. I can see port
1720 open on the phone switch but don't really know what to do with it.
Regards
Barry Clearwater
-------------------------------------------------------------------------
This SF.net email is sponsored by: Microsoft
Defy all challenges. Microsoft(R) Visual Studio 2005.
http://clk.atdmt.com/MRT/go/vse0120000070mrt/direct/01/
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users