On Debian Family, the kernel forward option sits on  /etc/sysctl.conf

Fábio Rabelo

2017-12-01 14:36 GMT-02:00 Tom Eastep <teas...@shorewall.net>:

> On 12/01/2017 05:20 AM, Jean-Francois Bogaerts wrote:
> > Hi,
> >
> > I'm  experiencing problems setting up VPN using:
> >
> > Shorewall version 5.0.15.6 on Debian Linux 9.1 (more precisely Raspbian
> > on Raspberry PI2 model B)
> >
> > I made the setup using the web manpages in the same fashion for road
> > warrior setup
> >
> > I have installed both PPTP  and OpenVPN
> > VPN works fine, I can connect clients
> >
> > When connected with either VPN I can ping all physical interfaces on the
> > firewall host, however none of local subnet
> >
> > I tried different policy setup like ALL to ALL ACCEPT or defined zone by
> > zone without success
> >
> > I also tried different combinations of proxyarp and routeback options
> > for VPN interfaces
> >
> > Attached the dump and conf files
> >
> > Thx in advance for your attention
>
> You need to set IP_FORWARDING=Yes in shorewall.conf.
>
> -Tom
> --
> Tom Eastep        \   Q: What do you get when you cross a mobster with
> Shoreline,         \     an international standard?
> Washington, USA     \ A: Someone who makes you an offer you can't
> http://shorewall.org \   understand
>                       \_______________________________________________
>
>
> ------------------------------------------------------------
> ------------------
> Check out the vibrant tech community on one of the world's most
> engaging tech sites, Slashdot.org! http://sdm.link/slashdot
> _______________________________________________
> Shorewall-users mailing list
> Shorewall-users@lists.sourceforge.net
> https://lists.sourceforge.net/lists/listinfo/shorewall-users
>
>
------------------------------------------------------------------------------
Check out the vibrant tech community on one of the world's most
engaging tech sites, Slashdot.org! http://sdm.link/slashdot
_______________________________________________
Shorewall-users mailing list
Shorewall-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to