Home Man
Search
Today's Posts
Register

Discuss UNIX and Linux computer and network security, cyber security, cyber attacks, IT security, and more.

Openvpn nat and iptables

Tags
iptables, security, vpn

Login to Reply

 
Thread Tools Search this Thread
# 1  
Old 11-04-2016
Openvpn nat and iptables

good day good people

hi

first to tell that firewall and vpn is working as expected, but I notice something strange.

I have host system 11.11.11.11(local ip) firewall is blocking everything except port to vpn.
I have vpn on virtualized system 22.22.22.22 (CentOS both host and virtual). They are behind MikroTik router and then to my ISP router. This is a home setup I'm just experimenting.

PREROUTING 11.11.11.11:1194 to 22.22.22.22:1194 all other is blocked by iptables.
POSTROUTING 22.22.22.22 to 11.11.11.11

I noticed with Wireshark from host 11.11.11.11 that while I'm connected to vpn from another pc that 11.11.11.11 is connecting to ip addresses of websites I visit while in same time is connected to vpn. like:

11.11.11.11 XX.XX.XX public ip
11.11.11.11 tcp udp sites i visit

but 11.11.11.11 is unnecessarily making connections to website ip addresses. She cannot make the reqests because DNS and ports for that are blocked. So this is because postrouting command my best guess. Can this somehow be disabled? First this is a security issue, second its unnecessary.

Someone told me that this is because NAT setup. but I believe that this can be disabled somehow, I didn't find solution yet so maybe someone know how.

thanks


Moderator's Comments:
Openvpn nat and iptables We had to correct a lot of spelling errors. Please put more effort into using proper english

Last edited by Scrutinizer; 11-05-2016 at 03:48 AM.. Reason: Spelling
Login to Reply

« Previous Thread | Next Thread »
Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

More UNIX and Linux Forum Topics You Might Find Helpful
Thread Thread Starter Forum Replies Last Post
OpenVPN and NAT nickb1976 Solaris 0 08-05-2015 04:27 PM
iptables for openvpn sdnix UNIX for Dummies Questions & Answers 0 08-15-2014 12:38 PM
Cisco VPN pcf and OpenVPN metallica1973 IP Networking 2 11-12-2011 12:11 PM
OPENVPN on FREEBSD cozsmin IP Networking 0 11-06-2009 11:03 AM
Iptables/TC: how to make masqueraded traffic go through an openVPN tun0? theVOID IP Networking 2 08-27-2008 11:46 PM
OpenVPN 2.09 ns-cert-type ??? kungpow UNIX for Advanced & Expert Users 0 05-15-2007 09:55 PM
RV082 with OpenVPN and/or isakmpd vertigo23 Security 0 07-27-2005 07:29 PM


All times are GMT -4. The time now is 05:27 PM.

Unix & Linux Forums Content Copyrightę1993-2018. All Rights Reserved.
UNIX.COM Login
Username:
Password:  
Show Password