wishes

Guus Sliepen guus at sliepen.eu.org
Thu Jan 20 23:37:52 CET 2005


On Thu, Jan 20, 2005 at 09:50:21PM +0100, Florian Reitmeir wrote:

> i've tested it today, before writing, i have a DSL router which uses pptp. On
> my lokal pc here, i installed tinc an setup a ping to an other vpn-host.
> 
> When my router reconnects (he also does NAT for me), the router get a new IP
> address, and the connection to the VPN is frozen. OpenVPN just detects this
> immediately and reconnects. 
> 
> I my case tinc didn't work until i restartet it, but after restart my ssh-session to
> to vpn also was broken -> because the interface was going down.
> 
> So what i want, is a "silent" reconnect from tinc to the vpn-server. I hope
> its now easier to see the point. 

Hm, NAT... try setting PingTimeout = 20 in tinc.conf on the host behind
the DSL router.

> > > - it is very important to me, that the interface does not go down. 
> > In that case, you can create a persistent tun/tap interface with
> > "tunctl" from the User Mode Linux package or with OpenVPN.
> ah, thanks. that solves an other problem too, i wondered if its possible for
> the tincd to drop his privileges? when i set the tun interface for the user
> it should work, or i'm missing something?

That should work. Tinc doesn't require root privileges if you use a
preconfigured tun/tap device and use a Port (in the host config file)
equal to or higher than 1024.

-- 
Met vriendelijke groet / with kind regards,
    Guus Sliepen <guus at sliepen.eu.org>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: Digital signature
Url : http://brouwer.uvt.nl/pipermail/tinc-devel/attachments/20050120/876a97f4/attachment.pgp


More information about the tinc-devel mailing list