Visit Jeremy's Blog.
Go Back > Forums > Linux Forums > Linux - Networking
User Name
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.


  Search this Thread
Old 06-24-2006, 03:19 AM   #1
LQ Newbie
Registered: Jun 2006
Posts: 17

Rep: Reputation: 0
Question Can you setup a VPN on a Green Interface?

I am confused:

Does it require an orange, or can I do it under the protection of a safer green inferface. I do not know... I know orange = DMZ host, and that is really bad in terms of security.

All I want to do is access my private files at work from home. Can I do that via green interface?
Old 06-24-2006, 04:10 AM   #2
LQ Guru
Registered: Aug 2001
Location: Fargo, ND
Distribution: SuSE AMD64
Posts: 15,733

Rep: Reputation: 677Reputation: 677Reputation: 677Reputation: 677Reputation: 677Reputation: 677
I assume that you have a smoothwall firewall. But, I'm confused by what you mean.
Is your computer connected to the internet, or do you go through a gateway/firewall?

If it is the latter, you may not be able to connect to your work computer from home, unless the firewall is configured to forward the VNC ports to your work computer's IP address. Connecting to your home computer from work may be possible if your companies firewall will allow the ports through. A NAT router will notice the LAN IP that is initiating a connection. Then it knows which LAN address a returning packet is for. If you try to connect from home, it has no way of knowing which LAN host the connection is for. Initial VNC ports can be forward to a single host, but only one, unless both sides of the connection are configured to use nonstandard ports, and the router knows which port is assigned to which LAN host.

If your work computer has an internet IP address, or does static nat translation then it may be possible to connect to your work computer from home. For example, you may have an internet address like, that the firewall translates to a lan address of You could be registered with a DNS address such as All allowed ports on from the internet are forwarded to


fileserver, interface, orange, server, vpn

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off

Similar Threads
Thread Thread Starter Forum Replies Last Post
VPN single interface card kloppster Linux - Networking 0 10-13-2004 07:46 PM
VPN setup vanibhat Linux - Networking 2 09-03-2003 07:42 AM
VPN setup shoot2kill Linux - Networking 0 08-15-2003 03:21 AM
VPN Setup dnfrantum Linux - Networking 0 07-10-2003 06:42 PM
VPN Setup bedwardj Linux - Networking 1 06-04-2001 11:36 AM > Forums > Linux Forums > Linux - Networking

All times are GMT -5. The time now is 11:19 PM.

Main Menu
Write for LQ is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Facebook: linuxquestions Google+: linuxquestions
Open Source Consulting | Domain Registration