old-www/HOWTO/VPN-Masquerade-HOWTO.html

108 lines
5.8 KiB
HTML

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 3.2 Final//EN">
<HTML>
<HEAD>
<META NAME="GENERATOR" CONTENT="SGML-Tools 1.0.9">
<TITLE>Linux VPN Masquerade HOWTO</TITLE>
<LINK HREF="VPN-Masquerade-HOWTO-1.html" REL=next>
</HEAD>
<BODY>
<A HREF="VPN-Masquerade-HOWTO-1.html">Next</A>
Previous
Contents
<HR>
<H1>Linux VPN Masquerade HOWTO</H1>
<H2>John D. Hardin <CODE>
<A HREF="mailto:jhardin@wolfenet.com">&lt;jhardin@wolfenet.com&gt;</A></CODE> </H2>$Revision: 2.19 $ $Date: 2000-10-22 12:07:43-07 $
<P><HR>
<EM>How to configure a Linux firewall to masquerade
IPsec- and PPTP-based Virtual Private Network traffic, allowing you to
establish a VPN connection without losing the security and flexibility of
your Linux firewall's internet connection and allowing you to make
available a VPN server that does not have a registered internet IP address.
Brief information on configuring the VPN client and server is also given.</EM>
<HR>
<P>
<H2><A NAME="toc1">1.</A> <A HREF="VPN-Masquerade-HOWTO-1.html">Introduction</A></H2>
<UL>
<LI><A HREF="VPN-Masquerade-HOWTO-1.html#ss1.1">1.1 Introduction </A>
<LI><A HREF="VPN-Masquerade-HOWTO-1.html#ss1.2">1.2 Feedback, Credits &amp; Resources</A>
<LI><A HREF="VPN-Masquerade-HOWTO-1.html#ss1.3">1.3 Copyright &amp; Disclaimer</A>
</UL>
<P>
<H2><A NAME="toc2">2.</A> <A HREF="VPN-Masquerade-HOWTO-2.html">Background Knowledge</A></H2>
<UL>
<LI><A HREF="VPN-Masquerade-HOWTO-2.html#ss2.1">2.1 What is a VPN?</A>
<LI><A HREF="VPN-Masquerade-HOWTO-2.html#ss2.2">2.2 What is IPsec?</A>
<LI><A HREF="VPN-Masquerade-HOWTO-2.html#ss2.3">2.3 What is PPTP?</A>
<LI><A HREF="VPN-Masquerade-HOWTO-2.html#ss2.4">2.4 What is FWZ?</A>
<LI><A HREF="VPN-Masquerade-HOWTO-2.html#ss2.5">2.5 Why masquerade a VPN client?</A>
<LI><A HREF="VPN-Masquerade-HOWTO-2.html#ss2.6">2.6 Can several clients on my local network use IPsec simultaneously?</A>
<LI><A HREF="VPN-Masquerade-HOWTO-2.html#ss2.7">2.7 Can several clients on my local network use PPTP simultaneously?</A>
<LI><A HREF="VPN-Masquerade-HOWTO-2.html#ss2.8">2.8 Can I access the remote network from my entire local network?</A>
<LI><A HREF="VPN-Masquerade-HOWTO-2.html#ss2.9">2.9 Why masquerade the VPN server?</A>
<LI><A HREF="VPN-Masquerade-HOWTO-2.html#ss2.10">2.10 Why patch the Linux kernel?</A>
<LI><A HREF="VPN-Masquerade-HOWTO-2.html#ss2.11">2.11 Current Status</A>
</UL>
<P>
<H2><A NAME="toc3">3.</A> <A HREF="VPN-Masquerade-HOWTO-3.html">Configuring the Linux firewall</A></H2>
<UL>
<LI><A HREF="VPN-Masquerade-HOWTO-3.html#ss3.1">3.1 Example network</A>
<LI><A HREF="VPN-Masquerade-HOWTO-3.html#ss3.2">3.2 Determining what needs to be done on the firewall</A>
<LI><A HREF="VPN-Masquerade-HOWTO-3.html#ss3.3">3.3 Patching and configuring the 2.0.x kernel for VPN Masquerade support</A>
<LI><A HREF="VPN-Masquerade-HOWTO-3.html#ss3.4">3.4 Patching and configuring the 2.2.x kernel for VPN Masquerade support</A>
<LI><A HREF="VPN-Masquerade-HOWTO-3.html#ss3.5">3.5 ipfwadm setup for a Private-IP VPN Client or Server</A>
<LI><A HREF="VPN-Masquerade-HOWTO-3.html#ss3.6">3.6 ipchains setup for a Private-IP VPN Client or Server</A>
<LI><A HREF="VPN-Masquerade-HOWTO-3.html#ss3.7">3.7 A note about dynamic IP addressing</A>
<LI><A HREF="VPN-Masquerade-HOWTO-3.html#ss3.8">3.8 Additional setup for a Private-IP VPN Server</A>
<LI><A HREF="VPN-Masquerade-HOWTO-3.html#ss3.9">3.9 ipfwadm setup for a Registered-IP VPN Server</A>
<LI><A HREF="VPN-Masquerade-HOWTO-3.html#ss3.10">3.10 ipfwadm setup for a Registered-IP VPN Client</A>
<LI><A HREF="VPN-Masquerade-HOWTO-3.html#ss3.11">3.11 ipchains setup for a Registered-IP VPN Server</A>
<LI><A HREF="VPN-Masquerade-HOWTO-3.html#ss3.12">3.12 ipchains setup for a Registered-IP VPN Client</A>
<LI><A HREF="VPN-Masquerade-HOWTO-3.html#ss3.13">3.13 VPN Masq and LRP</A>
<LI><A HREF="VPN-Masquerade-HOWTO-3.html#ss3.14">3.14 VPN Masq on a system running FreeS/WAN or PoPToP</A>
</UL>
<P>
<H2><A NAME="toc4">4.</A> <A HREF="VPN-Masquerade-HOWTO-4.html">Configuring the VPN client</A></H2>
<UL>
<LI><A HREF="VPN-Masquerade-HOWTO-4.html#ss4.1">4.1 Configuring a MS W'95 client</A>
<LI><A HREF="VPN-Masquerade-HOWTO-4.html#ss4.2">4.2 Configuring a MS W'98 client</A>
<LI><A HREF="VPN-Masquerade-HOWTO-4.html#ss4.3">4.3 Configuring a MS W'ME client</A>
<LI><A HREF="VPN-Masquerade-HOWTO-4.html#ss4.4">4.4 Configuring a MS NT client</A>
<LI><A HREF="VPN-Masquerade-HOWTO-4.html#ss4.5">4.5 Configuring for network-to-network routing</A>
<LI><A HREF="VPN-Masquerade-HOWTO-4.html#ss4.6">4.6 Masquerading Checkpoint SecuRemote-based VPNs</A>
</UL>
<P>
<H2><A NAME="toc5">5.</A> <A HREF="VPN-Masquerade-HOWTO-5.html">Troubleshooting</A></H2>
<UL>
<LI><A HREF="VPN-Masquerade-HOWTO-5.html#ss5.1">5.1 Testing</A>
<LI><A HREF="VPN-Masquerade-HOWTO-5.html#ss5.2">5.2 Possible problems</A>
<LI><A HREF="VPN-Masquerade-HOWTO-5.html#ss5.3">5.3 Troubleshooting</A>
<LI><A HREF="VPN-Masquerade-HOWTO-5.html#ss5.4">5.4 MS PPTP Clients and domain-name issues</A>
<LI><A HREF="VPN-Masquerade-HOWTO-5.html#ss5.5">5.5 MS PPTP Clients and Novell IPX</A>
<LI><A HREF="VPN-Masquerade-HOWTO-5.html#ss5.6">5.6 MS network password issues</A>
<LI><A HREF="VPN-Masquerade-HOWTO-5.html#ss5.7">5.7 If your IPsec session always dies after a certain amount of time</A>
<LI><A HREF="VPN-Masquerade-HOWTO-5.html#ss5.8">5.8 If VPN masquerade fails to work after you reboot</A>
<LI><A HREF="VPN-Masquerade-HOWTO-5.html#ss5.9">5.9 If your second PPTP session kills your first session</A>
</UL>
<P>
<H2><A NAME="toc6">6.</A> <A HREF="VPN-Masquerade-HOWTO-6.html">IPsec masquerade technical notes and special security considerations</A></H2>
<UL>
<LI><A HREF="VPN-Masquerade-HOWTO-6.html#ss6.1">6.1 Limitations and weaknesses of IPsec masquerade</A>
<LI><A HREF="VPN-Masquerade-HOWTO-6.html#ss6.2">6.2 Proper routing of inbound encrypted traffic</A>
</UL>
<HR>
<A HREF="VPN-Masquerade-HOWTO-1.html">Next</A>
Previous
Contents
</BODY>
</HTML>