PPP Lan Bridge

From: Chris Tusa at Linisys, LLC (linisys_at_gmail.com)
Date: 03/22/05

  • Next message: Neo-Vortex: "Re: disabling ipv6 with ppp"
    Date: Mon, 21 Mar 2005 18:27:58 -0600
    To: freebsd-net@freebsd.org
    
    

    Greetings,

    I am an experienced BSD administator. I am currently implementing a
    solution to connect two campus area buildings together using 2
    machines running FreeBSD 5.3 with 56K modems & PPP. I need some
    assistance as follows. I am trying to be verbose so as to provide a
    complete overview of what has been done and so this thread may be used
    a future guide for others.

    Scenario:

    * A countryclub has a maintainence department located on the other
    side of the golf course, too far to have a cable run or a
    line-of-sight wireless connection. The purpose of this connection is
    to provide a TCP/IP timeclock with access to the main building's
    network to transmit data.

    * Maintainence Shed (client): FreeBSD 5.3 client, Serial 56K modem
    running ppp-user. Timeclock connected to dial-up client via CrossOver
    ethernet cable.

    * Clubhouse (server): FreeBSD 5.3 server, Serial 56K modem running
    mgetty. Server connected to LAN switch.

    * The LAN at the clubhouse consists of a CABLE Modem connection, with
    an OpenBSD based firewall that provides NAT/PROXY services to the
    internal network.

    Current Setup:

    (see this diagram I posted: URL =
    http://people.linisys.com/ctusa/images/diagram.jpg )
    <img src="http://people.linisys.com/ctusa/images/diagram.jpg">

    * main WAN router= 192.168.1.1
    * dialup Server (fxp0)= 192.168.1.230 gateway_enable="yes"
    * dialup Server (tun0)= 192.168.1.230 -> 192.168.1.232 (modem)
    * dialup Client (tun0)= 192.168.1.232
    * dialup Client (fxp0)= 192.168.2.1 gateway_enable="yes"

    Problem:

    * It seems that NAT is functioning well, and the systems behind can
    communicate. However, the timeclock is unable to communicate with its
    counterpart at the clubhouse. I believe this is because they are on
    different subnets and routing is not taking place.

    * The timeclock communicates on port 3301 - some sort of forwarding
    must be enabled through the ppp nat ?

    * how can the 192.168.2.0 network be accessible from the 192.168.1.0
    network? I know that the 192.168.1.232 (modem) / 192.1681.230
    (ethernet) server box at the main clubhouse is the gateway. How can
    other machines find out about this? or can the man residential gateway
    learn about this?

    Current possible diagnosis:

    * The complexity of having 2 gateways, it seems that in order for each
    machine to be able to see the 192.168.2.0 network at the client side
    (maintainence shed), a static route must be added. I would like to
    avoid this.

    What I would like:

    * To have the timeclock be on the SAME network as the rest of the clubhouse.

    -- 
    Chris Tusa
    linisys@gmail.com
    http://people.linisys.com/ctusa
    Buy books from my Half.com inventory:
    http://half.ebay.com/shops/shops.jsp?seller_id=1691584
    _______________________________________________
    freebsd-net@freebsd.org mailing list
    http://lists.freebsd.org/mailman/listinfo/freebsd-net
    To unsubscribe, send any mail to "freebsd-net-unsubscribe@freebsd.org"
    

  • Next message: Neo-Vortex: "Re: disabling ipv6 with ppp"

    Relevant Pages

    • RE: wirless connection security issues
      ... wrt54gl only has a single port for the incoming network. ... I would set up the router to use the Class C private IP range ... for your machines. ... Subject: wirless connection security issues ...
      (Security-Basics)
    • Re: resolver problems
      ... If you've got a little router, ... for using the graphical network information tool in system preferences. ... I do not have any of the machines specifically set to route from one ... transforming your network connection to a shared connection from several ...
      (freebsd-questions)
    • Re: Gateway address needed
      ... connection problems. ... Ah, well, if it's your own network then you're the admin, do what you ... Workgroup name - just fine - same as other machines. ... What does a 'ping 192.168.2.1' say ...
      (alt.internet.wireless)
    • Re: Simple network through modem / router combo
      ... Right click on the wireless connection and select Disable - you can always ... If both machines are running XP Home Edition, ... Add Guest to 'Access this computer from the network'. ... >>>wireless capability and can also connect to the internet that way. ...
      (microsoft.public.windowsxp.network_web)
    • RE: Problems with Permissions
      ... And SBS server is only take ... the role of an internal server. ... they are all configured to connected to internal network. ... g. Run the Configure Email and Internet Connection Wizard on SBS server. ...
      (microsoft.public.windows.server.sbs)