LinuxQuestions.org
Share your knowledge at the LQ Wiki.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 03-09-2008, 08:13 AM   #1
malcarada
Member
 
Registered: Feb 2008
Distribution: FreeBSD, Debian
Posts: 31

Rep: Reputation: 16
Question VPN disconnects, privacy query


I am using a VPN (openvpn) to connect to the internet 24/7 ,I am also runnning a bit torrent client 24/7, there are times when my external VPN provider will disconnect for a few minutes, then recconect again as it has been set up to recconect automatically.

What happens during those minutes that the VPN disconnects? Do the applications connected to the internet stop too, or do these applications just carry on as normal passing all traffic through my ISP internet connexion instead of the VPN?

Example of what I see in the shell when openVPN disconnects (notice, first two lines, process killed by expiring key at 7:31:38, then restarts at 7:32:22):

----------------------------------------------------------------------
Sun Mar 9 06:33:22 2008 Control Channel: TLSv1, cipher TLSv1/SSLv3 DHE-RSA-AES2
56-SHA, 2048 bit RSA
Sun Mar 9 07:31:38 2008 TLS: tls_multi_process: killed expiring key
Sun Mar 9 07:33:22 2008 TLS: soft reset sec=0 bytes=406074373/0 pkts=914720/0
Sun Mar 9 07:33:31 2008 VERIFY OK: depth=1, /C=US/ST=OR/L=Halfway/O=VPN__LL
C/CN=VPN__LLC_CA/emailAddress=pki@*****.com
Sun Mar 9 07:33:31 2008 VERIFY OK: depth=0, /C=US/ST=OR/L=Halfway/O=VPN__LL
C/CN=server/emailAddress=pki@*****.com
Sun Mar 9 07:33:49 2008 Data Channel Encrypt: Cipher 'AES-256-CBC' initialized with 256 bit key
-----------------------------------------------------------------------
 
Old 03-10-2008, 09:23 AM   #2
unSpawn
Moderator
 
Registered: May 2001
Posts: 29,415
Blog Entries: 55

Rep: Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600
Quote:
Originally Posted by malcarada View Post
What happens during those minutes that the VPN disconnects? Do the applications connected to the internet stop too, or do these applications just carry on as normal passing all traffic through my ISP internet connexion instead of the VPN?
If you don't want apps to route traffic over your ISP's connection (no x there) I hope you blocked traffic that way. You can easily find out what decisions are allowed for traffic by checking your routes (route, ip) and see where traffic goes effectively by using iptables (-j LOG) rules or sniffing traffic with say tcpdump or wireshark (preferably with a BPF filter so you only log what you want to see).
 
Old 03-10-2008, 09:40 AM   #3
malcarada
Member
 
Registered: Feb 2008
Distribution: FreeBSD, Debian
Posts: 31

Original Poster
Rep: Reputation: 16
I am relatevely new to Linux so I would have to learn iptables and all the other stuff you mention, if the apps get disconnected when the VPN is disconnected then it would not be necessaty for me to invest the time learning all that.

It is good to know I can apply rules to avoid routing traffic through my ISP, which I wasn't aware of, but I will only get into that once I find out that I have to.

Last edited by malcarada; 03-10-2008 at 09:42 AM.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Privacy tytower Mandriva 13 01-13-2007 09:51 AM
help with mysql query: return nth rows in query hawarden Programming 2 07-31-2006 06:36 PM
linux privacy NCC-1701&NCC-1701-D Linux - Security 1 06-03-2005 08:43 AM
VPN query linetnew Linux - Networking 3 05-27-2005 11:25 AM
Linux privacy Jay Smith Linux - Newbie 3 08-29-2004 12:01 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 04:09 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration