Not all traffic routed through openconnect VPN The 2019 Stack Overflow Developer Survey Results Are InRoute VPN traffic through socks proxyRoute VPN Through ProxyRouting only VM traffic through VPNOpenVPN - Linux client connects but could not access internet, routing issueOpenWRT - Openconnect VPN on isolated SSIDAllow SSH connection not using my VPNRoute subnet traffic through OpenVPN tunnelRoute all eth1 traffic over VPNroute traffic on certain port through certain interface?How to route traffic from br0 to tun0 when tun0 is not the default route of the system
What does Linus Torvalds mean when he says that Git "never ever" tracks a file?
Landlord wants to switch my lease to a "Land contract" to "get back at the city"
Are there incongruent pythagorean triangles with the same perimeter and same area?
Can a rogue use sneak attack with weapons that have the thrown property even if they are not thrown?
Earliest use of the term "Galois extension"?
Multiply Two Integer Polynomials
Identify This Plant (Flower)
Why isn't the circumferential light around the M87 black hole's event horizon symmetric?
Are children permitted to help build the Beis Hamikdash?
STM32 programming and BOOT0 pin
Why do UK politicians seemingly ignore opinion polls on Brexit?
Can one be advised by a professor who is very far away?
Right tool to dig six foot holes?
How technical should a Scrum Master be to effectively remove impediments?
Geography at the pixel level
How come people say “Would of”?
Loose spokes after only a few rides
Is three citations per paragraph excessive for undergraduate research paper?
What could be the right powersource for 15 seconds lifespan disposable giant chainsaw?
Identify boardgame from Big movie
Is flight data recorder erased after every flight?
Where to refill my bottle in India?
Pokemon Turn Based battle (Python)
One word riddle: Vowel in the middle
Not all traffic routed through openconnect VPN
The 2019 Stack Overflow Developer Survey Results Are InRoute VPN traffic through socks proxyRoute VPN Through ProxyRouting only VM traffic through VPNOpenVPN - Linux client connects but could not access internet, routing issueOpenWRT - Openconnect VPN on isolated SSIDAllow SSH connection not using my VPNRoute subnet traffic through OpenVPN tunnelRoute all eth1 traffic over VPNroute traffic on certain port through certain interface?How to route traffic from br0 to tun0 when tun0 is not the default route of the system
.everyoneloves__top-leaderboard:empty,.everyoneloves__mid-leaderboard:empty,.everyoneloves__bot-mid-leaderboard:empty margin-bottom:0;
I'm trying to connect to a VPN network using openconnect with the following command:
sudo openconnect -s /etc/vpnc/vpnc-script SERVER
I manage to connect to the VPN, so that I can connect to PCs in the remote network, but the internet traffic is not routed through the VPN.
Is this the default behavior? How can I route all the traffic?
I've tried with:
sudo route add default dev tun0
but at that point I cannot even ping google.
My system is Manjaro linux, with openconnect v7.06
networking vpn
bumped to the homepage by Community♦ 2 days ago
This question has answers that may be good or bad; the system has marked it active so that they can be reviewed.
add a comment |
I'm trying to connect to a VPN network using openconnect with the following command:
sudo openconnect -s /etc/vpnc/vpnc-script SERVER
I manage to connect to the VPN, so that I can connect to PCs in the remote network, but the internet traffic is not routed through the VPN.
Is this the default behavior? How can I route all the traffic?
I've tried with:
sudo route add default dev tun0
but at that point I cannot even ping google.
My system is Manjaro linux, with openconnect v7.06
networking vpn
bumped to the homepage by Community♦ 2 days ago
This question has answers that may be good or bad; the system has marked it active so that they can be reviewed.
Isn'tsuperuser.coma more suitable site for this question? There you could find also answers like this, superuser.com/questions/692027/…
– MariusMatutiae
Apr 15 '16 at 8:35
add a comment |
I'm trying to connect to a VPN network using openconnect with the following command:
sudo openconnect -s /etc/vpnc/vpnc-script SERVER
I manage to connect to the VPN, so that I can connect to PCs in the remote network, but the internet traffic is not routed through the VPN.
Is this the default behavior? How can I route all the traffic?
I've tried with:
sudo route add default dev tun0
but at that point I cannot even ping google.
My system is Manjaro linux, with openconnect v7.06
networking vpn
I'm trying to connect to a VPN network using openconnect with the following command:
sudo openconnect -s /etc/vpnc/vpnc-script SERVER
I manage to connect to the VPN, so that I can connect to PCs in the remote network, but the internet traffic is not routed through the VPN.
Is this the default behavior? How can I route all the traffic?
I've tried with:
sudo route add default dev tun0
but at that point I cannot even ping google.
My system is Manjaro linux, with openconnect v7.06
networking vpn
networking vpn
asked Apr 15 '16 at 8:06
Simone GaiarinSimone Gaiarin
82
82
bumped to the homepage by Community♦ 2 days ago
This question has answers that may be good or bad; the system has marked it active so that they can be reviewed.
bumped to the homepage by Community♦ 2 days ago
This question has answers that may be good or bad; the system has marked it active so that they can be reviewed.
Isn'tsuperuser.coma more suitable site for this question? There you could find also answers like this, superuser.com/questions/692027/…
– MariusMatutiae
Apr 15 '16 at 8:35
add a comment |
Isn'tsuperuser.coma more suitable site for this question? There you could find also answers like this, superuser.com/questions/692027/…
– MariusMatutiae
Apr 15 '16 at 8:35
Isn't
superuser.com a more suitable site for this question? There you could find also answers like this, superuser.com/questions/692027/…– MariusMatutiae
Apr 15 '16 at 8:35
Isn't
superuser.com a more suitable site for this question? There you could find also answers like this, superuser.com/questions/692027/…– MariusMatutiae
Apr 15 '16 at 8:35
add a comment |
1 Answer
1
active
oldest
votes
At least the VPN gateway address should use the regular default gateway, otherwise the tunnel endpoint can not be reached anymore causing the tunnel to fail and you end up with nothing.
It depends on the VPN gateway which networks are negotiated/configured to go through the tunnel but you might be able to add some routing rules for other networks as well. If they will work depend on the other side of the tunnel, if those networks are allowed to travel through the tunnel.
Some companies require that all traffic goes through the tunnel, others will only configure the networks they want to travel through the tunnel, leaving everything else untouched.
In the answer linked by @MariusMatutiae they suggest to override the variableCISCO_SPLIT_INC=but doing so, again, there is no internet at all and seems that also the tunnel cannot reach the internet gateway, The problem is that I don't know the VPN gateway. All the tun0 route entry have0.0.0.0as gateway. Example routing entry:10.13.24.0 0.0.0.0 255.255.255.0 U 0 0 0 tun0
– Simone Gaiarin
Apr 16 '16 at 13:29
add a comment |
Your Answer
StackExchange.ready(function()
var channelOptions =
tags: "".split(" "),
id: "106"
;
initTagRenderer("".split(" "), "".split(" "), channelOptions);
StackExchange.using("externalEditor", function()
// Have to fire editor after snippets, if snippets enabled
if (StackExchange.settings.snippets.snippetsEnabled)
StackExchange.using("snippets", function()
createEditor();
);
else
createEditor();
);
function createEditor()
StackExchange.prepareEditor(
heartbeatType: 'answer',
autoActivateHeartbeat: false,
convertImagesToLinks: false,
noModals: true,
showLowRepImageUploadWarning: true,
reputationToPostImages: null,
bindNavPrevention: true,
postfix: "",
imageUploader:
brandingHtml: "Powered by u003ca class="icon-imgur-white" href="https://imgur.com/"u003eu003c/au003e",
contentPolicyHtml: "User contributions licensed under u003ca href="https://creativecommons.org/licenses/by-sa/3.0/"u003ecc by-sa 3.0 with attribution requiredu003c/au003e u003ca href="https://stackoverflow.com/legal/content-policy"u003e(content policy)u003c/au003e",
allowUrls: true
,
onDemand: true,
discardSelector: ".discard-answer"
,immediatelyShowMarkdownHelp:true
);
);
Sign up or log in
StackExchange.ready(function ()
StackExchange.helpers.onClickDraftSave('#login-link');
);
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Required, but never shown
StackExchange.ready(
function ()
StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2funix.stackexchange.com%2fquestions%2f276653%2fnot-all-traffic-routed-through-openconnect-vpn%23new-answer', 'question_page');
);
Post as a guest
Required, but never shown
1 Answer
1
active
oldest
votes
1 Answer
1
active
oldest
votes
active
oldest
votes
active
oldest
votes
At least the VPN gateway address should use the regular default gateway, otherwise the tunnel endpoint can not be reached anymore causing the tunnel to fail and you end up with nothing.
It depends on the VPN gateway which networks are negotiated/configured to go through the tunnel but you might be able to add some routing rules for other networks as well. If they will work depend on the other side of the tunnel, if those networks are allowed to travel through the tunnel.
Some companies require that all traffic goes through the tunnel, others will only configure the networks they want to travel through the tunnel, leaving everything else untouched.
In the answer linked by @MariusMatutiae they suggest to override the variableCISCO_SPLIT_INC=but doing so, again, there is no internet at all and seems that also the tunnel cannot reach the internet gateway, The problem is that I don't know the VPN gateway. All the tun0 route entry have0.0.0.0as gateway. Example routing entry:10.13.24.0 0.0.0.0 255.255.255.0 U 0 0 0 tun0
– Simone Gaiarin
Apr 16 '16 at 13:29
add a comment |
At least the VPN gateway address should use the regular default gateway, otherwise the tunnel endpoint can not be reached anymore causing the tunnel to fail and you end up with nothing.
It depends on the VPN gateway which networks are negotiated/configured to go through the tunnel but you might be able to add some routing rules for other networks as well. If they will work depend on the other side of the tunnel, if those networks are allowed to travel through the tunnel.
Some companies require that all traffic goes through the tunnel, others will only configure the networks they want to travel through the tunnel, leaving everything else untouched.
In the answer linked by @MariusMatutiae they suggest to override the variableCISCO_SPLIT_INC=but doing so, again, there is no internet at all and seems that also the tunnel cannot reach the internet gateway, The problem is that I don't know the VPN gateway. All the tun0 route entry have0.0.0.0as gateway. Example routing entry:10.13.24.0 0.0.0.0 255.255.255.0 U 0 0 0 tun0
– Simone Gaiarin
Apr 16 '16 at 13:29
add a comment |
At least the VPN gateway address should use the regular default gateway, otherwise the tunnel endpoint can not be reached anymore causing the tunnel to fail and you end up with nothing.
It depends on the VPN gateway which networks are negotiated/configured to go through the tunnel but you might be able to add some routing rules for other networks as well. If they will work depend on the other side of the tunnel, if those networks are allowed to travel through the tunnel.
Some companies require that all traffic goes through the tunnel, others will only configure the networks they want to travel through the tunnel, leaving everything else untouched.
At least the VPN gateway address should use the regular default gateway, otherwise the tunnel endpoint can not be reached anymore causing the tunnel to fail and you end up with nothing.
It depends on the VPN gateway which networks are negotiated/configured to go through the tunnel but you might be able to add some routing rules for other networks as well. If they will work depend on the other side of the tunnel, if those networks are allowed to travel through the tunnel.
Some companies require that all traffic goes through the tunnel, others will only configure the networks they want to travel through the tunnel, leaving everything else untouched.
answered Apr 15 '16 at 8:51
LambertLambert
9,17321328
9,17321328
In the answer linked by @MariusMatutiae they suggest to override the variableCISCO_SPLIT_INC=but doing so, again, there is no internet at all and seems that also the tunnel cannot reach the internet gateway, The problem is that I don't know the VPN gateway. All the tun0 route entry have0.0.0.0as gateway. Example routing entry:10.13.24.0 0.0.0.0 255.255.255.0 U 0 0 0 tun0
– Simone Gaiarin
Apr 16 '16 at 13:29
add a comment |
In the answer linked by @MariusMatutiae they suggest to override the variableCISCO_SPLIT_INC=but doing so, again, there is no internet at all and seems that also the tunnel cannot reach the internet gateway, The problem is that I don't know the VPN gateway. All the tun0 route entry have0.0.0.0as gateway. Example routing entry:10.13.24.0 0.0.0.0 255.255.255.0 U 0 0 0 tun0
– Simone Gaiarin
Apr 16 '16 at 13:29
In the answer linked by @MariusMatutiae they suggest to override the variable
CISCO_SPLIT_INC= but doing so, again, there is no internet at all and seems that also the tunnel cannot reach the internet gateway, The problem is that I don't know the VPN gateway. All the tun0 route entry have 0.0.0.0 as gateway. Example routing entry: 10.13.24.0 0.0.0.0 255.255.255.0 U 0 0 0 tun0– Simone Gaiarin
Apr 16 '16 at 13:29
In the answer linked by @MariusMatutiae they suggest to override the variable
CISCO_SPLIT_INC= but doing so, again, there is no internet at all and seems that also the tunnel cannot reach the internet gateway, The problem is that I don't know the VPN gateway. All the tun0 route entry have 0.0.0.0 as gateway. Example routing entry: 10.13.24.0 0.0.0.0 255.255.255.0 U 0 0 0 tun0– Simone Gaiarin
Apr 16 '16 at 13:29
add a comment |
Thanks for contributing an answer to Unix & Linux Stack Exchange!
- Please be sure to answer the question. Provide details and share your research!
But avoid …
- Asking for help, clarification, or responding to other answers.
- Making statements based on opinion; back them up with references or personal experience.
To learn more, see our tips on writing great answers.
Sign up or log in
StackExchange.ready(function ()
StackExchange.helpers.onClickDraftSave('#login-link');
);
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Required, but never shown
StackExchange.ready(
function ()
StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2funix.stackexchange.com%2fquestions%2f276653%2fnot-all-traffic-routed-through-openconnect-vpn%23new-answer', 'question_page');
);
Post as a guest
Required, but never shown
Sign up or log in
StackExchange.ready(function ()
StackExchange.helpers.onClickDraftSave('#login-link');
);
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Required, but never shown
Sign up or log in
StackExchange.ready(function ()
StackExchange.helpers.onClickDraftSave('#login-link');
);
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Required, but never shown
Sign up or log in
StackExchange.ready(function ()
StackExchange.helpers.onClickDraftSave('#login-link');
);
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
-networking, vpn
Isn't
superuser.coma more suitable site for this question? There you could find also answers like this, superuser.com/questions/692027/…– MariusMatutiae
Apr 15 '16 at 8:35