D-Link Forums

The Graveyard - Products No Longer Supported => D-Link NetDefend Firewalls => Topic started by: baruj on August 12, 2011, 01:37:17 PM

Title: VPN problem route or iprules??
Post by: baruj on August 12, 2011, 01:37:17 PM
hi.

i have a problem whit my vpn conection.

i have d-link dfl-800.

clients in internet can conect whit vpn and have access to LAN and DMZ.
but i need conection whit point to point line in wan2 that a client dmz

vpn---->wan1----->lan Yes
                   -----> dmz Yes
                   -----> wan2 NO (is the most important conection for vpn clients)

can I resolve this problem?? ???


thnx
Title: Re: VPN problem route or iprules??
Post by: chechito on August 12, 2011, 06:18:48 PM
Try by cli using verbosed ping simulating trafic

Example

Ping -verbose -rcvif=lan -srcip=192.168.0.100 8.8.8.8

The answer will describe routing, iprule, and shapping applied and the result

Can be used for tcp connection too showing ack and resets, very usefull i think
 
Title: Re: VPN problem route or iprules??
Post by: scrubsguy on August 14, 2011, 10:41:18 PM
iprules... somewhere you are missing something, please post your IP rules aswell as routing
Title: Re: VPN problem route or iprules??
Post by: baruj on August 16, 2011, 09:23:33 AM
this is IPRUles.


1  fromPPtPclients  Allow  pptp_server  pptp_ipppols  lan  lannet  all_services
2  toPPtPclients  Allow  lan  lannet  pptp_server  pptp_ipppols  all_services
3  entel_pptp  Allow  pptp_server  pptp_ipppols  any  all-nets  all_services
4  entel_pptp  Allow  any  all-nets  pptp_server  pptp_ipppols  all_services


and this is Table Route


16  Route  pptp_server  pptp_ipppols     100 No  
17  Route  pptp_server  EPCS  wan2_ip   100 No

Note: EPCS is a group of IP in Wan2

thanks ;D
Title: Re: VPN problem route or iprules??
Post by: scrubsguy on August 18, 2011, 01:34:09 AM
any services?
Title: Re: VPN problem route or iprules??
Post by: scrubsguy on August 18, 2011, 01:35:36 AM
sorry, which one you using?

VPN Objects
LDAP
IKE Config Mode Pool
IKE ID Lists
IKE Algorithms
IPsec Algorithms
Title: Re: VPN problem route or iprules??
Post by: danilovav on August 23, 2011, 07:57:51 PM
Do you need pass outbound traffic thru WAN1 and accept inbound VPN connections from WAN2?
What VPN type do you use?