From owner-FreeBSD-users-jp@jp.FreeBSD.org Thu Apr 11 15:33:06 2002
Received: (from daemon@localhost)
	by castle.jp.FreeBSD.org (8.11.6+3.4W/8.11.3) id g3B6X6S08247;
	Thu, 11 Apr 2002 15:33:06 +0900 (JST)
	(envelope-from owner-FreeBSD-users-jp@jp.FreeBSD.org)
Received: from cicgw.cic-kk.co.jp (cicgw.cic-kk.co.jp [203.137.146.33])
	by castle.jp.FreeBSD.org (8.11.6+3.4W/8.11.3) with ESMTP/inet id g3B6X6v08238
	for <FreeBSD-users-jp@jp.FreeBSD.org>; Thu, 11 Apr 2002 15:33:06 +0900 (JST)
	(envelope-from kgotoh@cic-kk.co.jp)
Received: from zeke.cic-kk.co.jp (zeke.cic-kk.co.jp [192.168.1.11])
	by cicgw.cic-kk.co.jp (8.9.3/3.7W-01060720) with ESMTP id PAA91578
	for <FreeBSD-users-jp@jp.FreeBSD.org>; Thu, 11 Apr 2002 15:33:05 +0900 (JST)
Received: from localhost (localhost.cic-kk.co.jp [127.0.0.1])
	by zeke.cic-kk.co.jp (8.9.3/3.6W 06/07/01) with ESMTP id PAA95745
	for <FreeBSD-users-jp@jp.FreeBSD.org>; Thu, 11 Apr 2002 15:33:05 +0900 (JST)
To: FreeBSD-users-jp@jp.FreeBSD.org
In-Reply-To: Your message of "Thu, 11 Apr 2002 13:41:11 +0900"
	<020411134111.M0101446@swordfish.MagickWorX.COM>
References: <020411134111.M0101446@swordfish.MagickWorX.COM>
X-Mailer: Mew version 1.93 on Emacs 19.34 / Mule 2.3 (SUETSUMUHANA)
Mime-Version: 1.0
Content-Type: Text/Plain; charset=iso-2022-jp
Content-Transfer-Encoding: 7bit
Message-Id: <20020411153305D.kgotoh@cic-kk.co.jp>
Date: Thu, 11 Apr 2002 15:33:05 +0900
From: Kazumasa Gotoh <kgotoh@cic-kk.co.jp>
X-Dispatcher: imput version 980905(IM100)
Lines: 93
Reply-To: FreeBSD-users-jp@jp.FreeBSD.org
Precedence: list
X-Distribute: distribute version 2.1 (Alpha) patchlevel 24e+020409
X-Sequence: FreeBSD-users-jp 67988
Subject: [FreeBSD-users-jp 67988] Re: VTun =?ISO-2022-JP?B?GyRCJEsbKEI=?=
 =?ISO-2022-JP?B?GyRCJGgkaxsoQg==?= VPN
	=?ISO-2022-JP?B?GyRCOT1DWxsoQg==?= 
Errors-To: owner-FreeBSD-users-jp@jp.FreeBSD.org
Sender: owner-FreeBSD-users-jp@jp.FreeBSD.org
X-Originator: kgotoh@cic-kk.co.jp


From: kouichi@MysticWALL.com
Date: Thu, 11 Apr 2002 13:41:11 +0900

> kgotoh> ptions {
>        ^
>        o $B$,H4$1$F$$$k(B

$B$3$l$O(B Cut & Paste $B;~$N%_%9$G$7$?!#(B(^^;

> kgotoh> default {
> kgotoh>   type tun;
>                ^^^^
> 	       stand/inetd $B$N$I$A$i$+(B
> 	       $B%G%U%)%k%H$O(B stand $B$N$O$:(B
> 
> 	  type $B$G(B tun $B$J$I$,;XDj$G$-$k$N$O!"(Boption {} $B$N>l9g!#(B
> 	  man vtund.conf $B$G3NG'$7$F$/$@$5$$!#(B

$B$3$l$O(B default $B$G$h$$$h$&$G$9!#%$%s%?%U%'!<%9!!(Bdown $B;~$N5-=R$O(B
$B$4;XE&$NDL$jITCm0U$G$7$?!#(B

/var/log/messages $B$K$O2?$b$G$J$$$N$G!"Fb;3$5$s$N$*4+$a$NDL$j(B vtun $B$N(B
$B%m%0$,=P$k$h$&$K$7$F$_$^$7$?(B($B2?$b$7$J$/$F$b=P$k$H;W$$9~$s$G$?!D(B)$B!#(B

$B7k6I!"$^$:Bg$-$J4V0c$$$H$7$F$O%5!<%PB&$N(B ipf $B$N%U%#%k%?%j%s%0$,$*$+$7$/$F(B
$B%/%i%$%"%s%H$+$i$N@\B3%Q%1%C%H$r$O$8$$$F$$$^$7$?!#$3$l$O(B

  block in on fxp0 all head 100
  ...
  pass in proto tcp from any port = 5000 to any group 100
  pass in proto tcp from any port = 5000 to any group 100

$B$H$7$FDL$k$@$m$&$H9M$($F$$$?$N$G$9$,!"2?$+0c$&$h$&$G$9!#$I$3$,$*$+$7$$(B
$B$N$+$O$^$@H=L@$7$^$;$s$,!"D4$Y$F$$$kESCf$G$9!#(B

$B$G!"$H$j$"$($:4m81$O>5CN$7$J$,$i;n$7$K%5!<%PB&$G$9$Y$F$N%Q%1%C%H$r(B
$BDL$9$h$&$K$7$F(B VTun $B%/%i%$%"%s%H$+$i@\B3$r;n$_$F$_$^$7$?$H$3$m!"(B
VTun $BF1;N$NDL?.$O9T$($k$h$&$K$J$j$^$7$?$,!"(Bping $B$J$I$,DL$j$^$;$s!#(B

$B%5!<%PB&(B:
   ifconfig
    tun0: flags=8051<UP,POINTOPOINT,RUNNING,MULTICAST> mtu 1500
        inet 192.168.100.1 --> 192.168.100.2 netmask 0xffffff00
        inet6 fe80::202:b3ff:fe22:c796%tun0 prefixlen 64 scopeid 0x8
        Opened by PID 3108

   netstat -rn
    Internet:
    Destination        Gateway            Flags    Refs      Use  Netif Expire
    default            aaa.bbb.ccc.dd1    UGSc        9      672   fxp0
    127.0.0.1          127.0.0.1          UH          3       25    lo0
    192.168.1          link#2             UC          3        0   fxp1
    192.168.1.251      link#2             UHLW        6        0   fxp1
    192.168.1.252      a:aa:aa:aa:aa:51   UHLW        4        0   fxp1    736
    192.168.1.253      link#2             UHLW        1        0   fxp1
    192.168.30         192.168.100.2      UGSc        0        0   tun0
    192.168.100.2      192.168.100.1      UH          1        0   tun0
    aaa.bbb.ccc.ddd/27  link#1             UC          3        0   fxp0
    aaa.bbb.ccc.dd2    a:a:aa:aa:aa:a2    UHLW        4     1282   fxp0    474
    aaa.bbb.ccc.ddd    a:a:aa:aa:aa:96    UHLW        0       11    lo0
    aaa.bbb.ccc.dd1    a:a:aa:aa:aa:20    UHLW        9      450   fxp0   1086

$B%/%i%$%"%s%HB&(B:
   ifconfig
     tun0: flags=8051<UP,POINTOPOINT,RUNNING,MULTICAST> mtu 1500
        inet 192.168.100.2 --> 192.168.100.1 netmask 0xffffff00
        inet6 fe80::290:27ff:fed1:2239%tun0 prefixlen 64 scopeid 0x8
        Opened by PID 3239

   netstat -rn
    Internet:
    Destination        Gateway            Flags    Refs      Use  Netif Expire
    default            www.xxx.yyy.zz9    UGSc        6    29953   fxp0
    www.xxx.yyy.zzz/29 link#1             UC          2        0   fxp0
    www.xxx.yyy.zz9    b:bb:bb:bb:bb:46   UHLW        6        0   fxp0    638
    www.xxx.yyy.zzz    b:bb:bb:bb:bb:39   UHLW        0        3    lo0
    127.0.0.1          127.0.0.1          UH          4        8    lo0
    192.168.1          192.168.100.1      UGSc        0        6   tun0
    192.168.30         link#2             UC          2        0   fxp1
    192.168.30.11      b:b:bb:bb:bb:e5    UHLW        1    43018   fxp1   1028
    192.168.30.102     b:b:bb:bb:bb:f2     UHLW        0    10436   fxp1    958
    192.168.100.1      192.168.100.2      UH          1       10   tun0

$B$H$J$C$F$$$k$N$G$9$,!"$U$?$D$N%M%C%H%o!<%/$N4V$G2?$bDL?.$G$-$^$;$s!#(B
$B%5!<%P(B/$B%/%i%$%"%s%HB&$H$b$K<+J,$NB&$N2>A[%"%I%l%9$K(B ping $B$bBG$F$^$;$s!#(B

$B?'!9D4$Y$F2r7h$G$-$J$1$l$P$^$?<ALd$7$F$7$^$&;v$K$J$k$+$H$O;W$$$^$9$,!"(B
$B$=$N@^$K$O$h$m$7$/$*4j$$$$$?$7$^$9!#(B

=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=
($B3t(B) $B%;%s%H%i%k>pJs%;%s%?!<(B
                             $B8eF#OB@/(B    kgotoh@cic-kk.co.jp
