Actions
Anomalie #1160
fermépeer explicite dans ccd openvpn
Difficulté:
2 Facile
Description
après restart de openvpn sur pavot.april.org les routes ne se propagent pas car les fichiers ccd contiennent une mention explicit du peer
Actions
#1
Mis à jour par Loïc Dachary il y a presque 12 ans
pavot.april.org
diff --git a/openvpn/ccd/april-ci b/openvpn/ccd/april-ci index d084299..111ad37 100644 --- a/openvpn/ccd/april-ci +++ b/openvpn/ccd/april-ci @@ -1,4 +1,4 @@ iroute 192.168.5.0 255.255.255.0 -push "route 192.168.4.0 255.255.255.0 192.168.0.45" +push "route 192.168.4.0 255.255.255.0" # harmine.pavot.vm.april-int only, for backups -push "route 192.168.2.22 255.255.255.255 192.168.0.45" +push "route 192.168.2.0 255.255.255.0" diff --git a/openvpn/ccd/loic.dachary b/openvpn/ccd/loic.dachary index c110011..0bf5403 100644 --- a/openvpn/ccd/loic.dachary +++ b/openvpn/ccd/loic.dachary @@ -1,3 +1,3 @@ -push "route 192.168.4.0 255.255.255.0 192.168.0.41" -push "route 192.168.5.0 255.255.255.0 192.168.0.41" -push "route 192.168.2.0 255.255.255.0 192.168.0.41" +push "route 192.168.4.0 255.255.255.0" +push "route 192.168.5.0 255.255.255.0" +push "route 192.168.2.0 255.255.255.0" diff --git a/openvpn/ccd/ns1 b/openvpn/ccd/ns1 index 285241d..17810da 100644 --- a/openvpn/ccd/ns1 +++ b/openvpn/ccd/ns1 @@ -1,4 +1,4 @@ iroute 192.168.1.0 255.255.255.0 -push "route 192.168.3.0 255.255.255.0 192.168.0.9" -push "route 192.168.2.0 255.255.255.0 192.168.0.9" -push "route 192.168.4.0 255.255.255.0 192.168.0.9" +push "route 192.168.3.0 255.255.255.0" +push "route 192.168.2.0 255.255.255.0" +push "route 192.168.4.0 255.255.255.0" diff --git a/openvpn/ccd/opium b/openvpn/ccd/opium index d6bc0ce..a3a0cf5 100644 --- a/openvpn/ccd/opium +++ b/openvpn/ccd/opium @@ -1,4 +1,4 @@ iroute 192.168.3.0 255.255.255.0 -push "route 192.168.1.0 255.255.255.0 192.168.0.5" -push "route 192.168.2.0 255.255.255.0 192.168.0.5" -push "route 192.168.4.0 255.255.255.0 192.168.0.5" +push "route 192.168.1.0 255.255.255.0" +push "route 192.168.2.0 255.255.255.0" +push "route 192.168.4.0 255.255.255.0" diff --git a/openvpn/ccd/yopo b/openvpn/ccd/yopo index b117000..ebb2d56 100644 --- a/openvpn/ccd/yopo +++ b/openvpn/ccd/yopo @@ -1,5 +1,5 @@ iroute 192.168.4.0 255.255.255.0 -push "route 192.168.5.0 255.255.255.0 192.168.0.21" -push "route 192.168.3.0 255.255.255.0 192.168.0.21" -push "route 192.168.2.0 255.255.255.0 192.168.0.21" -push "route 192.168.1.0 255.255.255.0 192.168.0.21" +push "route 192.168.5.0 255.255.255.0" +push "route 192.168.3.0 255.255.255.0" +push "route 192.168.2.0 255.255.255.0" +push "route 192.168.1.0 255.255.255.0"
Actions