On Sun, Jan 10, 2021 at 10:49:26PM +0100, Richard Emling wrote: > Hello. > > I recently setup a vpn between two Fritz! boxes. > the one is in a 192.168.179.0/16 range and the other is of type > 192.168.10.0/16. > So far, everything works fine and all devices connected to the one > Fritz! Box can see each other device connected to the other one. > In addition I have a Raspberry Pi connected to the Fritz! Box. > This Pi acts as router, dhcp and DNS server for a protected network, > operating in a range of 192.168.180.0/24. > I now wish to access selected devices in the vpn from behind the firewall. > When I try to ping for example 192.168.10.1 from a computer behind the > firewall, I get the following error: > > From 192.168.179.2 icmp_seq=1 Destination Host Unreachable > > 192.168.179.2 is the ip address, the fritz! Box issues to the one end of > the Pi.
Any log entries ? Did you tcpdump the outside interfaces ? Do you have NAT enabled and forwarding enabled ? https://shorewall.org/support.htm https://shorewall.org/two-interface.htm -- Justin _______________________________________________ Shorewall-users mailing list Shorewall-users@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/shorewall-users