Hi,

Sending the syslog through the VPN from the FIREWALL itself will not work. Pretty much as explained by Mike, and you have observed. Simply put the syslog leaves through the external interface and is not put through the VPN. Similar to the ping from one firewall to anothers protected interface or network does not work.

Additional Information - The GNAT Box itself can actually be administered through the VPN if the correct REMOTE ACCESS FILTERS are enabled.

David


At 09:19 AM 2/5/2003 -0500, you wrote:
Same difference.

Mike Burden
Lynk Systems
http://www.lynk.com
(616)532-4985
[EMAIL PROTECTED]


> -----Original Message-----
> From: Clive Walker [mailto:[EMAIL PROTECTED]]
> Sent: Wednesday, February 05, 2003 9:16 AM
> To: [EMAIL PROTECTED]
> Subject: RE: [gb-users] Remote logging via VPN
>
>
> I'm not trying to access the Gnatbox, I'm wanting the Gnatbox to send
> packets to me.
> Are you saying that my requirement is a non-starter? Can
> anyone from GTA
> confirm this?
>
>
> Best Regards
>
> Clive Walker
>
> -----Original Message-----
> From: Mike Burden [mailto:[EMAIL PROTECTED]]
> Sent: 05 February 2003 14:01
> To: [EMAIL PROTECTED]
> Subject: RE: [gb-users] Remote logging via VPN
>
>
> Yes, the fact that you can't ping from one to the other is
> a clue.   The VPN is tunnel mode, not transport mode, which
> effectively means you can't access the GNAT Box through the
> VPN.
>
> Mike Burden
> Lynk Systems
> http://www.lynk.com
> (616)532-4985
> [EMAIL PROTECTED]
>
>
> > -----Original Message-----
> > From: Clive Walker [mailto:[EMAIL PROTECTED]]
> > Sent: Wednesday, February 05, 2003 7:26 AM
> > To: [EMAIL PROTECTED]
> > Subject: [gb-users] Remote logging via VPN
> >
> >
> > Hi All
> >
> > I am trying to use the SYSlog utility to log messages from a
> > Gnatbox Flash
> > that is remote from my site.
> > I have set up a VPN between my local Gnatbox and the remote
> > one which seems
> > to be working OK. (I can ping targets on the other network's
> > protected zone,
> > and vice versa).  The Remote Logging Service (on the remote
> > Gnatbox) has
> > been set to target an IP address in my protected zone, but it
> > never receives
> > any info.
> >
> > My syslog on that same target will receive info from my local
> > Gnatbox so I
> > know it is listening.  (I have directed the local Gnatbox
> > Remote Logging
> > Service  to a different target now).
> >
> > I know I cannot use the ping tool within either Gnatbox to
> > ping the other
> > protected network. Is this a clue to the problem?
> >
> > I am using version 3.2.5 on both GBFlash machines.
> > Hoping someone has a solution.
> > Thanks for reading this.
> >
> > Clive Walker
> >
> > IT Manager
> > Employer Services Ltd
> >
> >
> ---------------------------------------------------------------------
> > To unsubscribe, e-mail: [EMAIL PROTECTED]
> > To subscribe to the digest version first unsubscribe, then
> >  e-mail: [EMAIL PROTECTED]
> > For additional commands, e-mail: [EMAIL PROTECTED]
> > Archive of the last 1000 messages:
> >  http://www.mail-archive.com/[email protected]
>
> ---------------------------------------------------------------------
> To unsubscribe, e-mail: [EMAIL PROTECTED]
> To subscribe to the digest version first unsubscribe, then
>  e-mail: [EMAIL PROTECTED]
> For additional commands, e-mail: [EMAIL PROTECTED]
> Archive of the last 1000 messages:
>  http://www.mail-archive.com/[email protected]
>
> ---------------------------------------------------------------------
> To unsubscribe, e-mail: [EMAIL PROTECTED]
> To subscribe to the digest version first unsubscribe, then
>  e-mail: [EMAIL PROTECTED]
> For additional commands, e-mail: [EMAIL PROTECTED]
> Archive of the last 1000 messages:
>  http://www.mail-archive.com/[email protected]

---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
To subscribe to the digest version first unsubscribe, then
 e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]
Archive of the last 1000 messages:
 http://www.mail-archive.com/[email protected]

David Brooks Email: [EMAIL PROTECTED]
Tech Support Tel: +1.407.482.6925
Global Technology Associates, Inc. Fax: +1.407.380.6080
3505 Lake Lynda Drive Web: http://www.gta.com
Suite 109 http://www.gnatbox.com
Orlando, Florida 32817 ftp://ftp.gnatbox.com
USA

---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
To subscribe to the digest version first unsubscribe, then
e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]
Archive of the last 1000 messages:
http://www.mail-archive.com/[email protected]

Reply via email to