Changes

Line 173: Line 173:     
'''FIREWALL'''
 
'''FIREWALL'''
* To achieve end-to-end client communication you need to configure the tinc zone '''Network->Firewall->General''', that was created at the installation.
  −
* Both routers should have identical zone configurations, we add lan zone into inter-zone forwading on both ''Allow forward to destination zones'' and ''Allow forward from source zones'' so we can communicate '''to''' and '''from''' lan.
     −
[[File:TincFirewall.png|alt=|1071x1071px]]
+
* To achieve end-to-end client communication you need to configure the tinc zone '''Network->Firewall->General''', that was created at the installation. Press the edit button to configure it.[[File:Tincfirewall1.png]]
 +
 
 +
[[File:Tincfirewall2.png]]
 +
 
 +
* 2. Open ''Allow forward to destination zones'' list.
 +
* ''3.''  Select '''lan''' zone, this will allow us to access LAN network from outside via tinc VPN.
 +
 
 +
[[File:Tincfirewall3.png]]
 +
 
 +
* 4. Open ''Allow forward from source zones'' list.
 +
* 5. Select '''lan''' zone, so we can access outside networks via tinc VPN too.
 +
* 6. Press '''Save & Apply'''
    
We are going to allow all forwards via this interface, including '''lan''' and '''wan networks''' into this zone. This way we can communicate from END1 to RUT2’s lan as well as END2 and vice versa.
 
We are going to allow all forwards via this interface, including '''lan''' and '''wan networks''' into this zone. This way we can communicate from END1 to RUT2’s lan as well as END2 and vice versa.

Navigation menu