VPN Client can't access Internet
Hey there,
the situation is as follows : at work I need a VPN connection if I want to access the internet with my laptop. This works great using windows, just type in the VPN server address, your username and password and you're all set. However when using Linux I can also get a vpn connection set up but no internet. According to the administrator they don't really have any experience in Linux and don't plan to support it directly, but there have been rumors of people long gone who made it work. Supposedly it was some sort of routing problem. I've tried both vpnc and a cisco vpn client. Using vpnc I get the following results for ifconfig and route : Code:
Kernel IP Routentabelle Code:
eth0 Protokoll:Ethernet Hardware Adresse 00:0D:60:8C:26:0D Code:
Kernel IP Routentabelle Code:
cipsec0 Protokoll:Ethernet Hardware Adresse 00:0B:FC:F8:01:8F /Whizz |
by default all traffic will be sent to the vpn peer. under vpnc you can control if this is actually the case. edit the /etc/vpnc/vpnc-script and follow the comments at the top to add CISCO_SPLIT_????? entries, e.g.
CISCO_SPLIT_INC=1 CISCO_SPLIT_INC_0_ADDR=10.1.0.0 CISCO_SPLIT_INC_0_MASK=255.255.0.0 CISCO_SPLIT_INC_0_MASKLEN=16 CISCO_SPLIT_INC_0_PROTOCOL=0 CISCO_SPLIT_INC_0_SPORT=0 CISCO_SPLIT_INC_0_DPORT=0 please don't think this is a bug or anything, and if you use the cisco client, then it's impossibel for it to override the settings as defined by your companies firewall. it's actally more likely down to the rst of your work netwrok stopping you using internet via their own woutes that would be used from a desk in the office... |
Thanks for the advice. Having been unsure about what data to set, and not finding anything on the net I tried the network address of my network adapter, the network address of the vpn server, the network address I get when I connect to the vpn server but all to no avail.
I'll cancel the project "vpn with linux at work" for now since it uses up to much time, but for now will refrain from reinstalling windows for the same reason. Thanks for your effort again! Cheers Whizz |
i'd suggest sticking with it to be honest, as above doing what you want with VPNC is very simple.
|
What are the split entries doing? What does having 1 entry mean?
I am on the outside of my company and want to connect to the vpn but also be able to connect to the internet directly, not through the VPN. Is this possible? |
well that's clearly exactly what the OP was asking, and what i answered. yes totally possible.
|
I didn't learn anything, but at least I feel pain.
|
hmm? if you are using vpnc, just read the comments at the top of the vpnc-script file with it and it should make more sense.
|
All times are GMT -5. The time now is 10:44 PM. |