Re: [Shorewall-users] DNAT routes Net -> ExternalServer -> VPN -> InternalServer correctly, but *return* not routed BACK over VPN. DNAT, SNAT, or routing?

2021-07-06 Thread PGNet Dev
Hi, On 7/6/21 4:31 PM, Justin Pryzby wrote: Shorewall @ "Public Server": /rules ACCEPT net$FW:AA.AA.AA.AAtcp12345 DNATnetvpn:10.10.10.99tcp12345- AA.AA.AA.AA Shorewall @

Re: [Shorewall-users] DNAT routes Net -> ExternalServer -> VPN -> InternalServer correctly, but *return* not routed BACK over VPN. DNAT, SNAT, or routing?

2021-07-06 Thread Justin Pryzby
On Tue, Jul 06, 2021 at 04:27:41PM -0400, PGNet Dev wrote: > Configs include: > > Shorewall @ "Public Server": > /rules > ACCEPT net$FW:AA.AA.AA.AAtcp12345 > DNATnetvpn:10.10.10.99tcp12345- >

[Shorewall-users] DNAT routes Net -> ExternalServer -> VPN -> InternalServer correctly, but *return* not routed BACK over VPN. DNAT, SNAT, or routing?

2021-07-06 Thread PGNet Dev
I'm setting up public access to a remote/internal server, on a specific port, over a private VPN. Topology is: Net | | eth0 (IP = AA.AA.AA.AA) "Public Server" (Shorewall) | vpn0 <-> "Private Edge:vpn0" | | eth0 (IP =