HP3000-L Archives

March 2009, Week 1

HP3000-L@RAVEN.UTC.EDU

Options: Use Monospaced Font
Show Text Part by Default
Show All Mail Headers

Message: [<< First] [< Prev] [Next >] [Last >>]
Topic: [<< First] [< Prev] [Next >] [Last >>]
Author: [<< First] [< Prev] [Next >] [Last >>]

Print Reply
Subject:
From:
Jeff Kell <[log in to unmask]>
Reply To:
Jeff Kell <[log in to unmask]>
Date:
Tue, 3 Mar 2009 11:44:01 -0500
Content-Type:
text/plain
Parts/Attachments:
text/plain (42 lines)
Paul Ankerson wrote:
> Hi,
>
> Still running Manman, still on MPE 5.5, but still the replacement system being 
> delayed, and now there are users wanting to log in from home, or wherever, 
> via Reflection as usual. Not too clever at networks tho.
> We used to have other sites connect through a neighbour gateway, but I 
> can't work out how to configure NMMGR to accept a home connection.

This would depend on several things, namely the IP subnet of your 3000,
the IP subnet of your VPN gateway, and the IP subnet the VPN server is
handing out endpoint addresses.

When you are at "home" you connect to the VPN gateway (a.a.a.a). 
Depending on your VPN setup, this usually installs a tunnel interface on
your PC.  Check "ipconfig" and it should show a new interface, with an
additional IP address.  This IP address is given to you by the VPN
gateway (this is the third subnet in my question above).

Next, on the home PC do a "route print".  You should now have a local
route to the subnet where your 3000 resides, and the route should point
to the tunnel interface created above.  If not, your VPN gateway is not
operating correctly (or not handing out your 3000's routing
information).  If all this is intact, your traffic should be getting
"to" the 3000, but not necessarily getting "back".

Does your 3000 have a "default gateway" ?  In NETTOOL, do a
"nameaddr;routing;gatelist" and check for a "default gateway" setting of
"y".  This should be pointing to your router.  Does the router know how
to get back to the tunnel endpoint address of the VPN server?  If not,
you need to either add routing information to the router, or add a
gateway to the 3000 that knows how to reach the endpoint address
(possibly the VPN gateway's inside address).

This can get quite convoluted (needless to say!) but most of the work
should be done at the network level, not necessarily your 3000.

Jeff

* To join/leave the list, search archives, change list settings, *
* etc., please visit http://raven.utc.edu/archives/hp3000-l.html *

ATOM RSS1 RSS2