Hello,

> When thinking about firewalls (and routing, for that matter), imagine
> OpenVPN as a black box sitting on a "second network card" connected
> to the linux machine.

> So there's iptables on the tun interface connecting "linux networking"
> and "openvpn black box" - packets towards openvpn (and the other side
> of the VPN) are processed "out on tunX", while packets coming from
> the VPN are processed "in on tunX".

That`s how the picture looked in my mind the first time and made the
first diagram. Then changed it twice to correct the order of
comp/frag/enc. and traffic NOT passing routing & iptables
from OpenVPN to tun and back.

Attached new diagram no.4

Thanks for looking into this,
Pippin
------------------------------------------------------------------------------
Check out the vibrant tech community on one of the world's most
engaging tech sites, Slashdot.org! http://sdm.link/slashdot
_______________________________________________
Openvpn-users mailing list
Openvpn-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/openvpn-users

Reply via email to