Hi

I have a routing problem with the OpenVPN service running directly on
the firewall itself. I have two DSL connections, one with a static IP
(and my default route), the other with a dynamic IP. The first is
called ISBD in the configs, the second is called SAIX.

Connecting to the OpenVPN via ISBD works well, the packets route
perfectly. Connecting via SAIX does not. In the attached status.txt, I
try to connect to the firewall via the SAIX line (IP 165.146.107.24)
from 41.245.93.27. In the Conntrack table, it's seems that the packets
try to return via ISBD (IP 196.211.31.106).

For a time I had SSH open on the firewall, and I could connect to it
via SAIX, so it seems to me that the return routing works for TCP if
not for UDP.

I don't want to rewrite ALL OpenVPN traffic from the firewall to route
via SAIX, I'd like to have the option of using ISBD if SAIX goes down.

Any help (or pointers to documentation I missed) will be appreciated.

ciao
Charl

Attachment: status.txt.bz2
Description: BZip2 compressed data

------------------------------------------------------------------------------
Stay on top of everything new and different, both inside and 
around Java (TM) technology - register by April 22, and save
$200 on the JavaOne (SM) conference, June 2-5, 2009, San Francisco.
300 plus technical and hands-on sessions. Register today. 
Use priority code J9JMT32. http://p.sf.net/sfu/p
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to