Changes

Line 170: Line 170:  
'''FIREWALL'''
 
'''FIREWALL'''
 
* To achieve end-to-end client communication you need to configure the tinc zone, that was created at the installation.
 
* To achieve end-to-end client communication you need to configure the tinc zone, that was created at the installation.
* Both routers should have identical zone configurations:
+
* Both routers should have identical zone configurations, we add lan zone into inter-zone forwading on both ''Allow forward to destination zones'' and ''Allow forward from source zones'' so we can communicate '''to''' and '''from''' lan.
   −
[[File:Tincfw2.png|843x843px]]
+
[[File:TincFirewall.png|alt=|1071x1071px]]
    
We are going to allow all forwards via this interface, including '''lan''' and '''wan networks''' into this zone. This way we can communicate from END1 to RUT2’s lan as well as END2 and vice versa.
 
We are going to allow all forwards via this interface, including '''lan''' and '''wan networks''' into this zone. This way we can communicate from END1 to RUT2’s lan as well as END2 and vice versa.