pushing routes to public ip blocks
Posted: Wed Jan 13, 2010 7:52 pm
Hi,
I want to use openvpn to allow access past our firewall. That is we want to block SSH to any one not using our VPN. All of our servers sit on public IP addresses, they do not have a private block from 10.x 192.x 179 etc...
Right now I have my vpn setup such that i can ping 10.8.0.1 no problem, however if i add
push "route xxx.48.78.64 255.255.255.192"
and then connect to my VPN via viscosity. If i then ping 10.8.0.1 , my cpu goes thru the roof, both openvpn and viscoty process take up as much cpu as then can and ping tells me i am out of buffer space....
Thoughs?
I want to use openvpn to allow access past our firewall. That is we want to block SSH to any one not using our VPN. All of our servers sit on public IP addresses, they do not have a private block from 10.x 192.x 179 etc...
Right now I have my vpn setup such that i can ping 10.8.0.1 no problem, however if i add
push "route xxx.48.78.64 255.255.255.192"
and then connect to my VPN via viscosity. If i then ping 10.8.0.1 , my cpu goes thru the roof, both openvpn and viscoty process take up as much cpu as then can and ping tells me i am out of buffer space....
Thoughs?