What's wrong in these configurations?

Guus Sliepen guus at tinc-vpn.org
Sat Nov 25 16:42:59 CET 2006


On Fri, Nov 24, 2006 at 11:18:52PM +0100, EleGoS wrote:

> >PC (under NAT)
> >files:
> >tinc/vpn/tinc.conf
> >tinc/vpn/rsa_key.priv
> >tinc/vpn/hosts/elegos
> >tinc/vpn/hosts/shadowkrad
[...]

That looks fine.

> >And this is my friend's configuration:
> >
> >files:
> >tinc/vpn/tinc.conf
> >tinc/vpn/rsa_key.priv
> >tinc/vpn/hosts/local
> >tinc/vpn/hosts/shadowkrad
> >
> >tinc.conf:
> >Name = shadowkrad
> >ConnectTo = local
> >Interface = VPN
> >
> >rsa_key.priv:
> >-----BEGIN RSA PRIVATE KEY-----
> >*cut*
> >-----END RSA PRIVATE KEY-----
> >
> >local:
> >Address = 82.57.***.65
> >Subnet = 10.10.10.11/32
> >-----BEGIN RSA PUBLIC KEY-----
> >*cut*
> >-----END RSA PUBLIC KEY-----
> >
> >shadowkrad:
> >Address = 82.57.***.65
> >Subnet = 10.10.10.11/32
> >-----BEGIN RSA PUBLIC KEY-----
> >*cut*
> >-----END RSA PUBLIC KEY-----
> >
> >P.S.
> >local is a copy of shadowkrad, and shadowkrad is the same file I've 
> >got in the first PC

You should get rid of "local". That is just plain wrong. Remove
"ConnectTo = local" from your friend's tinc.conf, and remove
hosts/local. Also, you should copy your hosts/elegos to your friend's
hosts/ directory.

-- 
Met vriendelijke groet / with kind regards,
     Guus Sliepen <guus at tinc-vpn.org>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: Digital signature
Url : http://brouwer.uvt.nl/pipermail/tinc/attachments/20061125/cf648b78/attachment.pgp


More information about the tinc mailing list