EutenhoumservidorOpenVPNemserver
.EleestádisponívelnaInternetpormeiodedoisNATs:primeiro,acaixaISPretransmitepara192.168.0.10
e,emseguida,192.168.0.10
retransmitepara10.10.10.254
(relays=DNAT).
eth0
MasnãoconsigomeconectaraoservidorOpenVPNde10.10.10.20
segmentandoPublic_IP
(amesmaconexãoquefuncionanaInternet-formaomesmolaptopfísicocomamesmaconfiguração).
Emquedireçãodevoestarolhandoparasolucionaresseproblema?
Emboraeutenhacontrolesobrelaptop
eserver
,aISPbox
éumacaixapretafechada.Umpacotequedeixa10.10.10.20
éencaminhadoporeth0
paraeth1
,oquedirecionaparaogatewaypadrão192.160.0.254
mascarando-onocaminho.
SeesteéumproblemacomacaixaISP,oazar,issonãoécrítico.Seesteforumproblemacomminhasregrasiptables
,entãoficareifelizemsaberoqueinvestigar.
OlogdoOpenVPNem10.10.10.20
SunApr0320:05:052016OpenVPN2.3.10x86_64-w64-mingw32[SSL(OpenSSL)][LZO][PKCS11][IPv6]builtonFeb12016SunApr0320:05:052016Windowsversion6.2(Windows8orgreater)SunApr0320:05:052016libraryversions:OpenSSL1.0.1r28Jan2016,LZO2.09SunApr0320:05:052016MANAGEMENT:TCPSocketlisteningon[AF_INET]127.0.0.1:25340SunApr0320:05:052016Needholdreleasefrommanagementinterface,waiting...SunApr0320:05:052016MANAGEMENT:Clientconnectedfrom[AF_INET]127.0.0.1:25340SunApr0320:05:052016MANAGEMENT:CMD'stateon'SunApr0320:05:052016MANAGEMENT:CMD'logallon'SunApr0320:05:052016MANAGEMENT:CMD'holdoff'SunApr0320:05:052016MANAGEMENT:CMD'holdrelease'SunApr0320:05:052016SocketBuffers:R=[65536->65536]S=[65536->65536]SunApr0320:05:052016MANAGEMENT:>STATE:1459706705,RESOLVE,,,SunApr0320:05:052016UDPv4linklocal:[undef]SunApr0320:05:052016UDPv4linkremote:[AF_INET]Public_IP:1194SunApr0320:05:052016MANAGEMENT:>STATE:1459706705,WAIT,,,SunApr0320:05:052016MANAGEMENT:>STATE:1459706705,AUTH,,,SunApr0320:05:052016TLS:Initialpacketfrom[AF_INET]Public_IP:1194,sid=44ff9c3debf679d7
emquePublic_IP
éoIPreal.
Umtcpdump
emtodasasinterfacesdesrv
mostraotráfegoaseguir(umfluxoUDP).DesculpepeloIPalterado,10.10.10.21
éomesmoque10.10.10.20
acima.
Tags networking iptables routing