IPCop VPN

From: Jon Hunt (jon_at_nospam.invalid)
Date: 02/16/04


Date: Mon, 16 Feb 2004 17:43:01 +0000 (UTC)

Hello all,

I hope someone can help.

I am trying to connect to small offices together using two IPcop (v1.2.0)
boxes. I have done this before, but on this occaision it just refuses to
work.

To explain, office A is setup as follows.
A single subnet of 10.0.0.0/24. Using an ADSL router to connect to the
internet. Green i/f of IPCop is set to 10.0.0.254. The red i/f is set to
one of three static ip's thay have. The adsl router has an internal and
external i/f and they are set to the two other static ip's. The gateway on
the ipcop is set to the internal of the router. They are connected to the
internet ok.

Office B is the same, except for the local subnet is 192.168.0.0/24. They
also can connect to the internet ok.

Following the advice of serveral FAQ's I setup both IPcops the same way.

Left 123.123.123.123 %defaultroute 123.123.123.124 192.168.0.0/24
Right 456.456.456.456 %defaultroute 456.456.456.457 10.0.0.0/24

Obviusly the external addresses I have used here are fake but other than
that evrything is the same. Unfortunately though, no ipsec route is
created. If I log on to the ipcop box and issue a netstat -nr I only get
one ipsec0 listed and I should get two. However I can ping and trace from a
machine on either LAN to the red i/f on the opposing IPcop box.

Any ideas, has my hairline is beginning to suffer.

Regards,

Jon



Relevant Pages

  • Re: old Notebook as firewall Qs
    ... my home network, and I'm hoping someone here can point me in the right direction. ... Can I use the CATC as the internet in and the 3COM as the internet out, ... I've connected a Linksys router to an old PIII laptop running IPCOP without any problems. ... The IPCOP does a better job than the Linksys router as the router does not have good logging facility. ...
    (comp.security.firewalls)
  • Re: =?ISO-8859-1?Q?Anf=E4nger-Frage_zu_Firewall_und_ausg?= =?ISO-8859-1?Q?ehende
    ... Router so konfigurieren, dass er nur IPCop ins Internet lässt ... Man kann auch das mit dem Proxy ganz lassen und anstelle von IPCop ein "komplettes" Linux zum browsen installieren ...
    (de.comp.security.misc)
  • Re: IP Cop configuration problems
    ... Since the IPCop firewall is on it's own segment, ... server can access the IPCop and the internet, ... NAT on the server for that segment. ...
    (comp.security.firewalls)
  • Re: =?utf-8?Q?Re:_Admin_heute:_Firefox_ist_b=C3=B6s?= e
    ... Ich habe den OP eher so verstanden, dass die Firma durchaus das Surfen ... unsinnigerweise mittels IPCop ausgesperrt. ... Internet am Arbeitsplatz erlaubt ist. ...
    (de.comp.security.misc)
  • Re: IPCOP - changing RED configuration
    ... > the answer in the IPCOP documentation or in their FAQ or on Google ... > new ADSL router, but can't figure out how this is done. ... You will need to logon to the console and run setup. ... the setup routine where you can change your networks settings for you red ...
    (comp.security.firewalls)