Date: Thu, 04 Apr 2002 12:01:02 -0800 From: Lars Eggert <larse@ISI.EDU> To: Kris Kirby <kris@catonic.net> Cc: freebsd-net@freebsd.org Subject: Re: VPN / VLAN? Message-ID: <3CACB0FE.5060500@isi.edu> References: <Pine.BSF.4.33.0204041937170.27304-100000@spaz.catonic.net>
next in thread | previous in thread | raw e-mail | index | archive | help
[-- Attachment #1 --] Kris Kirby wrote: >>What is required to make this work though is that you can get a few >>static IPs inside the 216.6.6.129/25 net (in your example) to relay. > > I'm a little confused by this. It's simple, really. At ISI, for example, we have the 128.9/16 subnet. We use a class C inside that block, and relay it over the tunnel to the remote site. Thus, at the remote site, everything looks like your are at the main site: you get an 128.9/16 IP address, etc. The NAT box is invisible. The down side for a normal home user is that you need someone that has a globally routable block (like 128.9/16) that is willing to hand you a sublock, and let you run one end of the relay on their system. It can't magically make your NAT'ed machines globally routable. Lars -- Lars Eggert <larse@isi.edu> Information Sciences Institute http://www.isi.edu/larse/ University of Southern California [-- Attachment #2 --] 0 *H 010 + 0 *H 00G0 *H 010 UZA10UWestern Cape10U Cape Town10 U Thawte10UCertificate Services1(0&UPersonal Freemail RSA 2000.8.300 010824164000Z 020824164000Z0T10 UEggert1 0U*Lars10ULars Eggert10 *H larse@isi.edu00 *H 0 |\Pw v~~FDooӦA\- Cˀ4.)&{肋,z(ܷر߈T7_'txGH^tt/ҹB8%t<#ֲN V0T0*+e!0 00L2uMyffBNUbNJJcdZ2s0U0 larse@isi.edu0U0 0 *H aJPMՒ ]cѭC+kS+wZ1gY",YT41 j6:~℩D~Kؚl=u(ՎM?cF7@}T00G0 *H 010 UZA10UWestern Cape10U Cape Town10 U Thawte10UCertificate Services1(0&UPersonal Freemail RSA 2000.8.300 010824164000Z 020824164000Z0T10 UEggert1 0U*Lars10ULars Eggert10 *H larse@isi.edu00 *H 0 |\Pw v~~FDooӦA\- Cˀ4.)&{肋,z(ܷر߈T7_'txGH^tt/ҹB8%t<#ֲN V0T0*+e!0 00L2uMyffBNUbNJJcdZ2s0U0 larse@isi.edu0U0 0 *H aJPMՒ ]cѭC+kS+wZ1gY",YT41 j6:~℩D~Kؚl=u(ՎM?cF7@}T0)00 *H 010 UZA10UWestern Cape10U Cape Town10U Thawte Consulting1(0&UCertification Services Division1$0"UThawte Personal Freemail CA1+0) *H personal-freemail@thawte.com0 000830000000Z 020829235959Z010 UZA10UWestern Cape10U Cape Town10 U Thawte10UCertificate Services1(0&UPersonal Freemail RSA 2000.8.3000 *H 0 32c %E>nx'gڈD)c5*mp<ܮto034qmOe KaU5u'rװ|CBPQ<9TIf - ki N0L0)U"0 010UPrivateLabel1-2970U0 0U0 *H so&e4KYbDI j&*bctmSK8P:l4撜n# KrgPo.XPWՈ9[9}4%MjÑ/<RbH100010 UZA10UWestern Cape10U Cape Town10 U Thawte10UCertificate Services1(0&UPersonal Freemail RSA 2000.8.30G0 + a0 *H 1 *H 0 *H 1 020404200102Z0# *H 1+|5 Udd?XLۭ0R *H 1E0C0 *H 0*H 0 *H @0+0 *H (0*H 1010 UZA10UWestern Cape10U Cape Town10 U Thawte10UCertificate Services1(0&UPersonal Freemail RSA 2000.8.30G0 *H dvb7ۙHcC0?[cpL%ܳDB^7GWC<߯g,й5^A$HޱƔPXl]
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?3CACB0FE.5060500>
