Господа помогите у кого поднят firewall на машине с freeswan и NAT
при поднятия межсетевого экрана vpn работает а инета внутри сети нет,
разрешил всё для forward.
Вот что выдает route до и после поднятия freeswan
Kernel IP routing table
Destination Gateway Genmask Flags Metric Ref Use Iface
111.25.170.60 * 255.255.255.252 U 0 0 0 eth0
192.168.1.0 * 255.255.255.0 U 0 0 0 eth1
169.254.0.0 * 255.255.0.0 U 0 0 0 eth1
127.0.0.0 * 255.0.0.0 U 0 0 0 lo
default telebi 0.0.0.0 UG 0 0 0 eth0
Kernel IP routing table
Destination Gateway Genmask Flags Metric Ref Use Iface
111.25.170.60 * 255.255.255.252 U 0 0 0 eth0
111.25.170.60 * 255.255.255.252 U 0 0 0 ipsec0
192.168.1.0 * 255.255.255.0 U 0 0 0 eth1
192.168.0.0 telebi 255.255.255.0 UG 0 0 0 ipsec0
169.254.0.0 * 255.255.0.0 U 0 0 0 eth1
127.0.0.0 * 255.0.0.0 U 0 0 0 lo
default telebi 128.0.0.0 UG 0 0 0 ipsec0
128.0.0.0 telebi 128.0.0.0 UG 0 0 0 ipsec0
default telebit 0.0.0.0 UG 0 0 0 eth0
вот ifconfig после поднятия freeswan
eth0 Link encap:Ethernet HWaddr 00:50:FC:99:0C:7F
inet addr:111.25.170.62 Bcast:81.25.170.63 Mask:255.255.255.252
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX packets:420 errors:0 dropped:0 overruns:0 frame:0
TX packets:355 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:100
RX bytes:80923 (79.0 Kb) TX bytes:92834 (90.6 Kb)
Interrupt:12 Base address:0xff00
eth1 Link encap:Ethernet HWaddr 00:0A:E6:7F:AC:8E
inet addr:192.168.1.16 Bcast:192.168.1.255 Mask:255.255.255.0
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX packets:343 errors:0 dropped:0 overruns:0 frame:0
TX packets:376 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:100
RX bytes:73770 (72.0 Kb) TX bytes:54361 (53.0 Kb)
Interrupt:12 Base address:0xd800
ipsec0 Link encap:Ethernet HWaddr 00:50:FC:99:0C:7F
inet addr:111.25.170.62 Mask:255.255.255.252
UP RUNNING NOARP MTU:16260 Metric:1
RX packets:362 errors:0 dropped:0 overruns:0 frame:0
TX packets:337 errors:0 dropped:36 overruns:0 carrier:0
collisions:0 txqueuelen:10
RX bytes:48705 (47.5 Kb) TX bytes:91744 (89.5 Kb)
lo Link encap:Local Loopback
inet addr:127.0.0.1 Mask:255.0.0.0
UP LOOPBACK RUNNING MTU:16436 Metric:1
RX packets:10 errors:0 dropped:0 overruns:0 frame:0
TX packets:10 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:0
RX bytes:700 (700.0 b) TX bytes:700 (700.0 b)