Re: m0n0wall strange vpn ipsec problem



VANHULLEBUS Yvan wrote:
teo <texmatto@xxxxxx> writes:


hi all,
i've setup 2 m0n0wall in 2 different site to make a vpn ipsec
connections through my lan

everything is ok (ping, ssh, ecc..)
but only for ONEWAY situation, when i try to connect from site1 to
site2, after few command my window hang.
in other word, i can connect to the remote m0n0wall interface (http)
without problem via vpn but if i try to connect to a server in the
remote lan (for example via ssh) after few commands (ls -l) if the
result is few character OK, otherwise my window hang!!
if i do the same from site 2 to site 1 all is perfect.


First thing to check with such strange hangs: MTU problems...

Set down the MTU on your client host to 1400, for example, or play
with the TCPMSS on one gates, and try again.


Yvan.
yhanks, Yvan, itry to change MTU but nothing changed do i have to reboot firewalls ? for me the problem is when the firewall route packet via vpn in the remote lan because i have non problem to manage the remote firewall web interface, but if i try to manage another host via web it hang.

matteo
.



Relevant Pages

  • RE: basic VPN question
    ... You go in the Properties of the VPN connection client, ... Is there a way to pass through the VPN only for the "remote LAN" ... delivering the message to the intended recipient, ...
    (Security-Basics)
  • VPN Connections Through Proxy
    ... I am trying to access my office via a VPN from a remote ... The remote LAN requires authorization to access the ...
    (microsoft.public.windowsxp.work_remotely)
  • Re: VPN routing from NAT to NAT
    ... if you are willing to lose all LAN connectivity while on ... the VPN, you can perhaps coexist on the same subnet.. ... If you are both using the same private network for your LANs, ... >VPN adapter, because that address is now bound to the VPN adapter and ...
    (microsoft.public.windowsxp.work_remotely)
  • Re: Multi-homed server and VPN
    ... The idea was to separate the LAN traffic from the VPN ... bound for the Internet go to the gateway 192.168.1.251, ... I have 192.168.1.251 as the router ...
    (microsoft.public.windows.server.networking)
  • Re: VPN & firewalls question
    ... What types of things do your remote clients need to do after they ... If the need access to their WinXP Pro LAN computers, create a VPN and fire ...
    (microsoft.public.backoffice.smallbiz2000)