Gentoo Archives: gentoo-user-ru

From: Antonio <anton.ananich@×××××.com>
To: gentoo-user-ru@l.g.o
Subject: [gentoo-user-ru] Advanced router: VPN + NAT
Date: Mon, 09 May 2005 14:49:38
Message-Id: 5a335a3d050509074965d72c93@mail.gmail.com
1 úÄÒÁ×ÓÔ×ÕÊ, All.
2
3 îÅ ÍÏÇÕ ÕÓÔÁÎÏ×ÉÔØ VPN ÓÏÅÄÉÎÅÎÉÅ ÞÅÒÅÚ ÍÁÒÛÒÕÔÉÚÁÔÏÒ Ó NAT, Ô.Ë.
4 ÍÁÒÛÒÕÔÉÚÁÔÏÒ ÒÕÂÉÔ ÐÁËÅÔÙ ÎÁ ÏÂÒÁÔÎÏÍ ÐÕÔÉ.
5 ðÒÏ×ÁÊÄÅÒ ×ÙÄÅÌÉÌ ÍÎÅ ÏÄÉÎ IP É ÐÏÜÔÏÍÕ Ñ ÎÅ ÍÏÇÕ ÏÂÏÊÔÉÓØ ÂÅÚ NAT.
6
7 eth0 - ÍÏÑ ÓÅÔØ
8 eth1 - ÓÅÔØ ÐÒÏ×ÁÊÄÅÒÁ
9 Ñ ÄÅÌÁÀ ÔÁË (ÎÁ ÒÏÕÔÅÒÅ):
10 root# iptables -t nat -F
11 root# iptables -t nat -A POSTROUTING -o eth1 -j MASQUERADE
12
13 äÁÌÅÅ Ñ ÐÉÎÇÕÀ ÉÚ Ó×ÏÅÊ ÓÅÔÉ VPN É ×Ó£ ÐÒÅËÒÁÓÎÏ. úÁÔÅÍ Ñ ÐÙÔÁÀÓØ
14 ÕÓÔÁÎÏ×ÉÔØ PPTP ÓÏÅÄÉÎÅÎÉÅ:
15
16 lanuser$ pptp-command-start
17
18 É ÐÒÉ ÜÔÏÍ ÓÍÏÔÒÀ, × ethereal Ó ÒÏÕÔÅÒÁ:
19
20 servak root # tethereal -i eth1
21 Capturing on eth1
22 0.000000 AniCommu_9a:03:7e -> Broadcast ARP Who has
23 10.255.10.254? Tell 10.255.10.11
24 0.000251 Peripher_06:fe:80 -> AniCommu_9a:03:7e ARP 10.255.10.254 is
25 at 00:60:52:06:fe:80
26 0.000290 10.255.10.11 -> 10.0.15.10 TCP 32771 > 1723 [SYN] Seq=0
27 Ack=0 Win=5840 Len=0 MSS=1460 TSV=1361978 TSER=0 WS=2
28 0.009925 10.0.15.10 -> 10.255.10.11 TCP 1723 > 32771 [SYN, ACK]
29 Seq=0 Ack=1 Win=5840 Len=0 MSS=1460 WS=0
30 0.010215 10.255.10.11 -> 10.0.15.10 TCP 32771 > 1723 [ACK] Seq=1
31 Ack=1 Win=5840 Len=0
32 0.010595 10.255.10.11 -> 10.0.15.10 PPTP Start-Control-Connection-Request
33 0.018978 10.0.15.10 -> 10.255.10.11 TCP 1723 > 32771 [ACK] Seq=1
34 Ack=157 Win=5840 Len=0
35 0.022423 10.0.15.10 -> 10.255.10.11 PPTP Start-Control-Connection-Reply
36 0.022603 10.255.10.11 -> 10.0.15.10 TCP 32771 > 1723 [ACK] Seq=157
37 Ack=157 Win=5840 Len=0
38 1.011884 10.255.10.11 -> 10.0.15.10 PPTP Outgoing-Call-Request
39 1.034907 10.0.15.10 -> 10.255.10.11 PPTP Outgoing-Call-Reply
40 1.035096 10.255.10.11 -> 10.0.15.10 TCP 32771 > 1723 [ACK] Seq=325
41 Ack=189 Win=5840 Len=0
42 1.050698 10.0.15.10 -> 10.255.10.11 PPP LCP Configuration Request
43 4.034409 10.0.15.10 -> 10.255.10.11 PPP LCP Configuration Request
44 5.000632 Peripher_06:fe:80 -> AniCommu_9a:03:7e ARP Who has
45 10.255.10.11? Tell 10.255.10.254
46 5.000713 AniCommu_9a:03:7e -> Peripher_06:fe:80 ARP 10.255.10.11 is
47 at 00:40:05:9a:03:7e
48 7.046198 10.0.15.10 -> 10.255.10.11 PPP LCP Configuration Request
49 10.057836 10.0.15.10 -> 10.255.10.11 PPP LCP Configuration Request
50 13.073387 10.0.15.10 -> 10.255.10.11 PPP LCP Configuration Request
51 16.073854 10.0.15.10 -> 10.255.10.11 PPP LCP Configuration Request
52 19.095401 10.0.15.10 -> 10.255.10.11 PPP LCP Configuration Request
53 22.098699 10.0.15.10 -> 10.255.10.11 PPP LCP Configuration Request
54 25.099888 10.0.15.10 -> 10.255.10.11 PPP LCP Configuration Request
55 28.109591 10.0.15.10 -> 10.255.10.11 PPP LCP Configuration Request
56 31.135193 10.0.15.10 -> 10.255.10.11 TCP 1723 > 32771 [FIN, ACK]
57 Seq=189 Ack=325 Win=6432 Len=0
58 31.135581 10.255.10.11 -> 10.0.15.10 TCP 32771 > 1723 [FIN, ACK]
59 Seq=325 Ack=190 Win=5840 Len=0
60 31.143228 10.0.15.10 -> 10.255.10.11 TCP 1723 > 32771 [ACK] Seq=190
61 Ack=326 Win=6432 Len=0
62
63 10.255.10.254 - ÛÌÀÚ ÐÒÏ×ÁÊÄÅÒÁ
64 10.0.15.10 - VPN ÓÅÒ×ÅÒ
65 10.255.10.11 - ÍÏÊ ÛÌÀÚ
66
67 îÁ ÛÌÀÚÅ ÓÔÏÉÔ ÑÄÒÏ 2.6.10. ñ ÐÒÏÂÏ×ÁÌ ÓÔÁ×ÉÔØ ÔÕÄÁ ×ÉÎÄÕ - ×Ó£
68 ÒÁÂÏÔÁÅÔ, ÅÓÌÉ ÓÄÅÌÁÔØ "Share internet connection". íÎÅ ËÁÖÅÔÓÑ, ÞÔÏ
69 ìÉÎÕËÓ ÎÅ ÈÕÖÅ, ÎÏ ...
70
71 úÁÒÁÎÅÅ ÓÐÁÓÉÂÏ ×ÓÅÍ ÏÔËÌÉËÎÕ×ÛÉÍÓÑ :)
72
73 --
74 Best Regards,
75 Antonio
76
77 ú.ù. üÔÏ ÎÅ ÏÆÆÔÏÐÉË? åÓÌÉ ÄÁ, ÔÏ ËÕÄÁ ÍÎÅ ÏÂÒÁÔÉÔØÓÑ?
78
79 --
80 gentoo-user-ru@g.o mailing list

Replies

Subject Author
[gentoo-user-ru] Re: Advanced router: VPN + NAT Antonio <anton.ananich@×××××.com>