[ previous ] [ next ] [ threads ]
 
 From:  "Kasper Pedersen" <m0n0list dash kkp at kasperkp dot dk>
 To:  "A.Kashkarov" <ovnt at ufps dot nnov dot ru>, <m0n0wall at lists dot m0n0 dot ch>
 Subject:  Re: [m0n0wall] IPsec Tunnel between 10.*.*.* <-> 10.*.*.* ?
 Date:  Wed, 12 Apr 2006 07:55:34 +0200
----- Original Message ----- 
From: "A.Kashkarov" <ovnt at ufps dot nnov dot ru>
To: <m0n0wall at lists dot m0n0 dot ch>
Sent: Wednesday, April 12, 2006 6:16 AM
Subject: [m0n0wall] IPsec Tunnel between 10.*.*.* <-> 10.*.*.* ?


> Hello
>
> Whether probably to make VPN Tunnel (IPsec) on the basis of 2 m0n0wall
> using on WAN interfaces IP 10.145.12.2 and 10.145.55.2?

The short answer to the question is yes, just disable 'filter private 
networks'.

The thing to remember is that RFC1918 adresses should not leave an 
autonomous system.
This means that your provider can assign, and route, these adresses _within 
it's network_. They cannot traverse AS boundaries, which means they cannot 
reach, say, my network.

/Kasper