Server Linux

Cum se poate realiza un VPN folosind tunel ssh

In general VPN permite accesul securizat (criptat si cu parola) din internet in reteaua locala. Sau poate unii doua retele locale prin intermediul retelei publice de internet, cu criptarea transferului prin reteaua publica.

Incepand cu versiunea 4.3 de ssh acesta include optiunea de a crea “Virtual Private Networks” via interfata tun. Un bun tutorial este aici:

https://help.ubuntu.com/community/SSH_VPN

 

 

    +---------------+            OpenSSH 4.3           +---------------+
    |   Machine A   | tun0 -- Tunnel Interface -- tun0 |   Machine B   |
    |  Has a tunnel | <------------------------------->|  Has a tunnel |  
    |  and ethernet | 10.0.0.100            10.0.0.200 |  and ethernet |
    +-------+-------+     point to point connection    +-------+-------+
       eth0 |                 creates a bridge                 | eth0  
 10.0.0.100 |               that plugs machine B               | 192.168.0.100
   port 22  |                  into network A                  |          
  forwarded |                                                  |
    here    |                                                  |
    +-------+-------+          +-~-~-~-~-~-~-~-+       +-------+-------+ 
    |   Network A   |          |               |       |   Network B   |
    |  10.0.0.1/24  | 1.2.3.4  |  The Internet |       | 192.168.0.1/24|
    |  Has internet |<-------->|               |<----->|  Has internet |
    |  NAT gateway  | Routable |               |       |  NAT gateway  |
    +---------------+ Address  +-~-~-~-~-~-~-~-+       +---------------+

 

 

[mai mult...]

Configurare protocoale retea interfata Linux

Mai jos va voi arata cum sa configurati protocoalele de retea intr-o interfata Linux. Pentru inceput pentru a afla informatiile de care avem nevoie rula comanda

# ifconfig

solutie1

Apoi accesam fisierul de config al placi de retea:

#vi /etc/sysconfig/network-scriptsifcfg-eth0

solutie2

Salvam modificarile in config apoi iesim. Noile modificari nu se vor efectuaa pana nu restartam interfata de retea

#service network restart

solutie3

 

 

 

 

[mai mult...]