Reader small image

You're reading from  Troubleshooting OpenVPN

Product typeBook
Published inMar 2017
Reading LevelIntermediate
PublisherPackt
ISBN-139781786461964
Edition1st Edition
Languages
Tools
Concepts
Right arrow
Author (1)
Eric F Crist
Eric F Crist
author image
Eric F Crist

Eric F Crist hails from Cottage Grove, Minnesota, and he works as a product and systems engineer for Abbott. He has a relatively wide range of professional and life experience starting from physical security and access control as a low-voltage technician into software development, system administration, and software development. Eric has been a core member of the OpenVPN community since 2008 and helps manage the open source online resources. He also wrote ssl-admin, and he is a lead for Easy-RSA, both of which help manage Certificate Authorities and chains. Eric collaborated with Jan Just Keisjer for the book, Mastering OpenVPN, in 2015, also for Packt.
Read more about Eric F Crist

Right arrow

IP addresses


It is important to choose an IP address range that does not have or has goods odds against, conflicting with remote client address pools. If VPN uses IP addresses from a range shared by a remote client address pool, packets meant for the client LAN may attempt to traverse the VPN to the wrong system or to a system that doesn't exist at all. Alternatively, the traffic may never leave the client LAN and be routed to a local resource, instead.

The following diagram illustrates a fairly severe case of what I'm describing. There are various resources identified with their associated LAN address on both sides.

On the left, there is a network where the VPN server resides. The LAN on the server network uses the 10.4.0.0/24 subnet. For the VPN, the 10.8.0.0/24 subnet is used. This will facilitate VPN traffic, and a route will be pushed for the server-side LAN subnet. There are two internal servers for which the VPN was created. The first is an application server using LAN IP 10.4.0.76...

lock icon
The rest of the page is locked
Previous PageNext Page
You have been reading a chapter from
Troubleshooting OpenVPN
Published in: Mar 2017Publisher: PacktISBN-13: 9781786461964

Author (1)

author image
Eric F Crist

Eric F Crist hails from Cottage Grove, Minnesota, and he works as a product and systems engineer for Abbott. He has a relatively wide range of professional and life experience starting from physical security and access control as a low-voltage technician into software development, system administration, and software development. Eric has been a core member of the OpenVPN community since 2008 and helps manage the open source online resources. He also wrote ssl-admin, and he is a lead for Easy-RSA, both of which help manage Certificate Authorities and chains. Eric collaborated with Jan Just Keisjer for the book, Mastering OpenVPN, in 2015, also for Packt.
Read more about Eric F Crist