On Tue, 8 Aug 2006, Brian Henning wrote:

However, I really really really want to run OpenVPN on bob and have it move traffic solely in and out through the .10.1 gateway. That service on that machine never needs to move a single packet out of the default gateway.

is it possible to differentiate the packets that go over the VPN by some IP parameter (src/dst address/port, proto) from the packets that go over the regular network? If so you can set up a routing table using the iproute2 tools. I won't say it's easy to set up. Here's a script I used to send packets from a particular IP:port over one network, while sending all the rest to a default gw.

http://www.austintek.com/LVS/LVS-HOWTO/HOWTO/LVS-HOWTO.3-Tier.html#3-tier_route_setup

Joe

--
Joseph Mack NA3T EME(B,D), FM05lw North Carolina
jmack (at) wm7d (dot) net - azimuthal equidistant map
generator at http://www.wm7d.net/azproj.shtml Homepage http://www.austintek.com/ It's GNU/Linux!
--
TriLUG mailing list        : http://www.trilug.org/mailman/listinfo/trilug
TriLUG Organizational FAQ  : http://trilug.org/faq/
TriLUG Member Services FAQ : http://members.trilug.org/services_faq/

Reply via email to