Avoid some hosts/networks to see each other

Guus Sliepen guus at tinc-vpn.org
Mon Feb 3 14:59:48 CET 2014


On Mon, Feb 03, 2014 at 11:58:37AM +0100, Alessandro Briosi wrote:

> I need a suggestion or just to know if it's even possible to achieve
> the following.
[...]
> Communication should go through direct link if possible.
> 
> What I want to achieve is:
> 1. road-warriors should be able to access all the VPN connected
> hosts/networks.
> 2. Central network should be able to access all VPN connected
> hosts/networks
> 3. Gateways/hosts/networks outside this should not see each other.

Although there are ways to prevent nodes from seeing each other (see the
TunnelServer option), it also has the side effect of not allowing direct
communication anymore. But in general, ff the nodes in category 3 should not
see each other, they should be in separate VPNs.

-- 
Met vriendelijke groet / with kind regards,
     Guus Sliepen <guus at tinc-vpn.org>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 181 bytes
Desc: Digital signature
URL: <http://www.tinc-vpn.org/pipermail/tinc/attachments/20140203/96deaa9b/attachment.sig>


More information about the tinc mailing list