With the configuration as follows (with the upgraded Shorewall from the repository you directed me to), I followed these steps and submitted the dump as requested after step 4:
"interfaces": #ZONE INTERFACE BROADCAST OPTIONS net eth0 detect dhcp,tcpflags,nosmurfs,routefilter,logmartians,required vpn tun0 detect optional "providers": #NAME NUMBER MARK DUPLICATE INTERFACE GATEWAY OPTIONS loc 1 1 - eth0 192.168.0.1 track,balance=1 iPredator 2 2 - tun0 - track,balance=2 1) I am able to apply the firewall configuration before connecting to OpenVPN, with the normal error: "WARNING: Interface tun0 is not usable -- Provider iPredator (2) not Started" 2) I am then able to connect to OpenVPN normally. 3) I can then re-apply the firewall configuration without error / warning. 4) I attempt to ping to verify my connection and all such packets are dropped 5) I then disconnect from OpenVPN and I get the error "connect: Network is unreachable" when attempting to ping / reconnect to OpenVPN 6) I then re-apply my firewall configuration 7) Ping's function normally and I can reconnect to OpenVPN (which functions normally) On 1/5/13, Tom Eastep <[email protected]> wrote: > On 01/05/2013 01:36 PM, f q wrote: >> As requested, please find attached. >> > > And what exactly did you try with this configuration that didn't work? > > -Tom > > -- > Tom Eastep \ When I die, I want to go like my Grandfather who > Shoreline, \ died peacefully in his sleep. Not screaming like > Washington, USA \ all of the passengers in his car > http://shorewall.net \________________________________________________ > > ------------------------------------------------------------------------------ Master Visual Studio, SharePoint, SQL, ASP.NET, C# 2012, HTML5, CSS, MVC, Windows 8 Apps, JavaScript and much more. Keep your skills current with LearnDevNow - 3,200 step-by-step video tutorials by Microsoft MVPs and experts. SALE $99.99 this month only -- learn more at: http://p.sf.net/sfu/learnmore_122912 _______________________________________________ Shorewall-users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/shorewall-users
