PoPToP VPN with Shorewall: can only reach PoPToP server
I have a PoPToP server running (192.168.0.2). I can login with Windows clients from the internet, but I can only reach the server PoPToP is running on. I would like to reach the other PC's in the LAN, too.
The server is running Mandrake 10. It is *not* connected directly to the internet. The internet connections is through a separate ADSL router (IP 192.168.0.16). The DHCP server on the server sets the gateway of all LAN clients to 192.168.0.16. However, the PoPToP clients cannot reach any host but the server PoPToP is running on (192.168.0.2).
e.g., connecting to samba shares, apache, etc. on 192.168.0.2 is no problem. Connecting to 192.168.0.x where x is no 2 times out. Connecting to a web server on the internet also times out.
/etc/pptpd.conf:
localip 192.168.0.234-238
remoteip 192.168.1.234-238
(however, after connecting, the client has address 192.168.0.204 and the server has address 192.168.0.203)
/etc/ppp/options:
lock
auth
dump
require-mschap-v2
require-mppe-128
noipdefault
192.168.0.203:192.168.0.204
ms-dns 192.168.0.2
/etc/shorewall/zones:
net Net Internet zone
/etc/shorewall/interfaces:
net eth0 detect
net ppp+ -
/etc/shorewall/tunnels:
pptpserver net 0.0.0.0/0
|