Thanks Tom! 
That was the problem. 
All I had to do is go into my VPN settings and uncheck the "use gateway of
remote network" setting under TCP/IP and the problem went away. 
I love this list.
 
Troy

-----Original Message-----
From: Tom Eastep [mailto:[EMAIL PROTECTED]
Sent: Monday, August 25, 2003 8:26 PM
To: Troy Aden
Cc: Leaf-User (E-mail)
Subject: Re: [leaf-user] Shorewall question

On Mon, 25 Aug 2003, Troy Aden wrote:

> My ASCI art is terrible so I will just try to describe this as best I can.
>
> I am running a Jabber server in my DMZ (192.168.2.2) PORT 5224 is open in
> shorewall to allow users to connect inbound.
> I am also running a windows client in my LOC zone. (192.168.1.2)
> The problem occurs when I make an OUTBOUND VPN connection to my work from
my
> Windows box in my LOC zone. (I have the proper helper modules enabled and
> VPN works fine.)
> What happens when I make the connection to my work is that all my Jabber
> clients connected from outside loose connectivity.
> Can someone please explain to me how I could stop my firewall from dumping
> all the inbound connections to my Jabber server when I make an outbound
VPN
> connection? Keep in mind, my windows box is in the LOC zone and my server
is
> in the DMZ.
>
> I am running Bering 1.2 on a cable modem connection with static IP 3 NIC
> (net/loc/dmz) setup. If any of you require additional info, I would be
happy
> to provide it.
>

I'm betting that your problem has absolutely nothing to do with your
firewall but rather with the fact that your VPN setup is transferring the
default route to the VPN tunnel when you connect. You can try changing
that setting in your VPN client configuration but that change may limit
your ability to access hosts in your employer's intranet.

-Tom
--
Tom Eastep    \ Shorewall - iptables made easy
Shoreline,     \ http://shorewall.net
Washington USA  \ [EMAIL PROTECTED]


-------------------------------------------------------
This SF.net email is sponsored by: VM Ware
With VMware you can run multiple operating systems on a single machine.
WITHOUT REBOOTING! Mix Linux / Windows / Novell virtual machines
at the same time. Free trial click here:http://www.vmware.com/wl/offer/358/0
------------------------------------------------------------------------
leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html

Reply via email to