On 5/28/2015 2:43 PM, PGNd wrote:
>
> On Thu, May 28, 2015, at 02:20 PM, Tom Eastep wrote:
>> Remove the vpn1 entry from your masq file.
> Alas, there's no such entry.
>
> local SHOREWALL/masq
>       EXT_IF      10.0.1.0/24      5.6.7.8
>
> remote SHOREWALL/masq
>       (empty)
>
>
> I'm stripping down the example pair of machines to just DNS & VPN and adding 
> logging rules.
>
> That should give me a better understanding of what's actually happening ...
On the remote system, try this masq entry:
vpn1:10.0.2.53    10.254.254.1    10.0.1.53        udp,tcp    53

-Tom

-- 
Tom Eastep        \ When I die, I want to go like my Grandfather who
Shoreline,         \ died peacefully in his sleep. Not screaming like
Washington, USA     \ all of the passengers in his car
http://shorewall.net \________________________________________________


Attachment: signature.asc
Description: OpenPGP digital signature

------------------------------------------------------------------------------
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to