Apologies, we've done so much tweaking trying to resolve the issue, I
haven't posted a current configuration in a bit.  Here's "providers",
I can post the other files as well on request:

#NAME           NUMBER  MARK    DUPLICATE       INTERFACE       GATEWAY         
OPTIONS
loc             1       1       -               eth0            192.168.0.1     
track,balance=1
iPredator       2       2       -               tun0            -               
track,balance=2

On 1/5/13, Tom Eastep <[email protected]> wrote:
> On 01/05/2013 07:42 AM, Tom Eastep wrote:
>> On 01/04/2013 01:07 PM, f q wrote:
>>> I did as you suggested and upgraded to the latest version in
>>> repository linked from the download page.
>>>
>>> shorewall, shorewall-core, shorewall-init: 4.5.5.3-1~bpo60+1
>>>
>>> After upgrading I modified the the 'rtrules' file to:
>>>
>>> #SOURCE     DEST      PROVIDER        PRIORITY
>>> lo           -         iPredator       11999
>>>
>>> As there was an error with leaving both "SOURCE" and "DESTINATION" set
>>> to "-", despite the example I lifted it from.
>>>
>>> 1) I am able to apply the firewall configuration before connecting to
>>> OpenVPN, with the normal error: "WARNING: Interface tun0 is not usable
>>> -- Provider iPredator (2) not Started"
>>> 2) I am then able to connect to OpenVPN normally.
>>> 3) I can then re-apply the firewall configuration without error /
>>> warning.
>>> 4) I attempt to ping to verify my connection and all such packets are
>>> dropped
>>> 5) I then disconnect from OpenVPN and I get the error "connect:
>>> Network is unreachable" when attempting to ping / reconnect to OpenVPN
>>> 6) I then re-apply my firewall configuration
>>> 7) Ping's function normally and I can reconnect to OpenVPN (which
>>> functions normally)
>>>
>>> So, similar behavior before the upgrade, but I can no longer use the
>>> OpenVPN connection when the firewall is "fully applied".
>>>
>>> Attached please find a new dump, taken directly after step 5, as above.
>>
>> Let's solve the problems one at a time. Please forward a dump taken
>> after step 4.
>
> You have 'fallback' on the 'loc' provider?
>
> -Tom
> --
> Tom Eastep        \ When I die, I want to go like my Grandfather who
> Shoreline,         \ died peacefully in his sleep. Not screaming like
> Washington, USA     \ all of the passengers in his car
> http://shorewall.net \________________________________________________
>
>

------------------------------------------------------------------------------
Master Visual Studio, SharePoint, SQL, ASP.NET, C# 2012, HTML5, CSS,
MVC, Windows 8 Apps, JavaScript and much more. Keep your skills current
with LearnDevNow - 3,200 step-by-step video tutorials by Microsoft
MVPs and experts. SALE $99.99 this month only -- learn more at:
http://p.sf.net/sfu/learnmore_122912
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to