LinuxQuestions.org
Review your favorite Linux distribution.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Distributions > Red Hat
User Name
Password
Red Hat This forum is for the discussion of Red Hat Linux.

Notices


Reply
  Search this Thread
Old 06-04-2009, 03:39 AM   #1
cvee
LQ Newbie
 
Registered: Jun 2009
Posts: 2

Rep: Reputation: 0
Centos 5.3 vpn passthrough for NAT'ed lan


I have a LAN behind ETH1 (2nd adapter) on my linux box, which is NATed, I need to get these guys to be able to VPN from that side of the lan.

I'm fairly certain I need:

modprobe nf_nat_proto_gre
modprobe nf_conntrack_proto_gre


Which do not currently exist in my kernel 2.6.18-128.el5 or I don't know their new names?

I'm semi-pro but have had little experience with module installation/kernel recompile.

I need to know these module equivalent names suitable for my install but have no clue and I've google-failed thus far.

Can anyone help? is recompiling the kernel seriously my only alternative? ( recompiling kernel x 200+ is really not an option for me)


Thanks in advance,

-Chris
 
Old 06-04-2009, 10:11 PM   #2
jdiggitydogg
Member
 
Registered: Sep 2007
Posts: 42

Rep: Reputation: 15
Depends on the type of VPN?

What type of VPN are you going to use? For example, OpenVPN (which is an SSL VPN) or IPSEC or something else? I don't have experience with IPSEC. With OpenVPN, you shouldn't need to recompile anything on your Linux box...unless your Linux box will be a VPN end-point or VPN server. For VPN pass-through, the Linux box should only need need to port forward to the appropriate NAT'd machines; and even this might not be necessary if you always initiate the connection from a NAT'd machine and set-up the OpenVPN configuration to "keep-alive" the connection. I've never tried it without port forwarding, so it is possibly firewall dependent.
 
Old 06-04-2009, 10:17 PM   #3
cvee
LQ Newbie
 
Registered: Jun 2009
Posts: 2

Original Poster
Rep: Reputation: 0
My goalis to accommodate the VPN functionality for my clients behind this NAT, I'm not hosting the VPN server itself. As it stands they have full internet access etc as per my lan set from behind the NAT, but are unable to use individual vpn clients (whatever they might be).

Basically its my router ---> main lan ( which has the Centos box).

Then Centos --> Eth1 NAT --> clients behind Eth1 .


I've tested successfully that behind my router I can vpn out from the Eth0 side of the network. However I have been unsuccessful from the Eth1 side .
 
  


Reply

Tags
centos, kernel, nat, passthrough, vpn



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
IPTABLES + vpn passthrough issue GGlinux Linux - Networking 0 03-03-2009 05:53 PM
IPTABLES: Forward from VPN to LAN, Need traffic to appear as if its coming from LAN. a2brute Linux - Networking 3 11-17-2008 11:53 AM
sharing VPN access with lan + after vpn connected unable to ping lan/public ip xxx_anuj_xxx Linux - Networking 1 03-14-2008 02:50 AM
VPN passthrough on Shorewall antidelldude Linux - Networking 0 07-16-2006 12:55 AM
VPN Passthrough on Linux himyuza Linux - Networking 2 01-12-2006 04:59 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Distributions > Red Hat

All times are GMT -5. The time now is 02:38 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration