vpn has no internet after upgrading to 18.04
up vote
0
down vote
favorite
Resently,i upgrade my ubuntu 16.04 server to 18.04
but after upgrading ,my (Cisco anyconnect,pptp) vpn servers have no internet access...
Can anyone help me?
18.04 internet vpn iptables pptp
add a comment |
up vote
0
down vote
favorite
Resently,i upgrade my ubuntu 16.04 server to 18.04
but after upgrading ,my (Cisco anyconnect,pptp) vpn servers have no internet access...
Can anyone help me?
18.04 internet vpn iptables pptp
add a comment |
up vote
0
down vote
favorite
up vote
0
down vote
favorite
Resently,i upgrade my ubuntu 16.04 server to 18.04
but after upgrading ,my (Cisco anyconnect,pptp) vpn servers have no internet access...
Can anyone help me?
18.04 internet vpn iptables pptp
Resently,i upgrade my ubuntu 16.04 server to 18.04
but after upgrading ,my (Cisco anyconnect,pptp) vpn servers have no internet access...
Can anyone help me?
18.04 internet vpn iptables pptp
18.04 internet vpn iptables pptp
edited Nov 20 at 11:43
asked Nov 19 at 21:13
ahooyee
140128
140128
add a comment |
add a comment |
1 Answer
1
active
oldest
votes
up vote
0
down vote
accepted
I solved the problem by adding following 2 iptables rules to my ubuntu server
iptables -P FORWARD ACCEPT
iptables -P OUTPUT ACCEPT
my exisisting iptables rules (related to pptp and ocsrv) before above changes:
iptables -I INPUT -p tcp --dport 1723 -m state --state NEW -j ACCEPT
iptables -I INPUT -p gre -j ACCEPT
iptables -t nat -I POSTROUTING -o ens32 -j MASQUERADE
iptables -I FORWARD -p tcp --tcp-flags SYN,RST SYN -s 182.18.0.0/24 -j TCPMSS --clamp-mss-to-pmtu
iptables -t nat -A POSTROUTING -o ens32 -j MASQUERADE
iptables -I INPUT -p tcp --dport 443 -j ACCEPT
iptables -I INPUT -p udp --dport 443 -j ACCEPT
add a comment |
1 Answer
1
active
oldest
votes
1 Answer
1
active
oldest
votes
active
oldest
votes
active
oldest
votes
up vote
0
down vote
accepted
I solved the problem by adding following 2 iptables rules to my ubuntu server
iptables -P FORWARD ACCEPT
iptables -P OUTPUT ACCEPT
my exisisting iptables rules (related to pptp and ocsrv) before above changes:
iptables -I INPUT -p tcp --dport 1723 -m state --state NEW -j ACCEPT
iptables -I INPUT -p gre -j ACCEPT
iptables -t nat -I POSTROUTING -o ens32 -j MASQUERADE
iptables -I FORWARD -p tcp --tcp-flags SYN,RST SYN -s 182.18.0.0/24 -j TCPMSS --clamp-mss-to-pmtu
iptables -t nat -A POSTROUTING -o ens32 -j MASQUERADE
iptables -I INPUT -p tcp --dport 443 -j ACCEPT
iptables -I INPUT -p udp --dport 443 -j ACCEPT
add a comment |
up vote
0
down vote
accepted
I solved the problem by adding following 2 iptables rules to my ubuntu server
iptables -P FORWARD ACCEPT
iptables -P OUTPUT ACCEPT
my exisisting iptables rules (related to pptp and ocsrv) before above changes:
iptables -I INPUT -p tcp --dport 1723 -m state --state NEW -j ACCEPT
iptables -I INPUT -p gre -j ACCEPT
iptables -t nat -I POSTROUTING -o ens32 -j MASQUERADE
iptables -I FORWARD -p tcp --tcp-flags SYN,RST SYN -s 182.18.0.0/24 -j TCPMSS --clamp-mss-to-pmtu
iptables -t nat -A POSTROUTING -o ens32 -j MASQUERADE
iptables -I INPUT -p tcp --dport 443 -j ACCEPT
iptables -I INPUT -p udp --dport 443 -j ACCEPT
add a comment |
up vote
0
down vote
accepted
up vote
0
down vote
accepted
I solved the problem by adding following 2 iptables rules to my ubuntu server
iptables -P FORWARD ACCEPT
iptables -P OUTPUT ACCEPT
my exisisting iptables rules (related to pptp and ocsrv) before above changes:
iptables -I INPUT -p tcp --dport 1723 -m state --state NEW -j ACCEPT
iptables -I INPUT -p gre -j ACCEPT
iptables -t nat -I POSTROUTING -o ens32 -j MASQUERADE
iptables -I FORWARD -p tcp --tcp-flags SYN,RST SYN -s 182.18.0.0/24 -j TCPMSS --clamp-mss-to-pmtu
iptables -t nat -A POSTROUTING -o ens32 -j MASQUERADE
iptables -I INPUT -p tcp --dport 443 -j ACCEPT
iptables -I INPUT -p udp --dport 443 -j ACCEPT
I solved the problem by adding following 2 iptables rules to my ubuntu server
iptables -P FORWARD ACCEPT
iptables -P OUTPUT ACCEPT
my exisisting iptables rules (related to pptp and ocsrv) before above changes:
iptables -I INPUT -p tcp --dport 1723 -m state --state NEW -j ACCEPT
iptables -I INPUT -p gre -j ACCEPT
iptables -t nat -I POSTROUTING -o ens32 -j MASQUERADE
iptables -I FORWARD -p tcp --tcp-flags SYN,RST SYN -s 182.18.0.0/24 -j TCPMSS --clamp-mss-to-pmtu
iptables -t nat -A POSTROUTING -o ens32 -j MASQUERADE
iptables -I INPUT -p tcp --dport 443 -j ACCEPT
iptables -I INPUT -p udp --dport 443 -j ACCEPT
answered Nov 20 at 11:42
ahooyee
140128
140128
add a comment |
add a comment |
Sign up or log in
StackExchange.ready(function () {
StackExchange.helpers.onClickDraftSave('#login-link');
});
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Required, but never shown
StackExchange.ready(
function () {
StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2faskubuntu.com%2fquestions%2f1094332%2fvpn-has-no-internet-after-upgrading-to-18-04%23new-answer', 'question_page');
}
);
Post as a guest
Required, but never shown
Sign up or log in
StackExchange.ready(function () {
StackExchange.helpers.onClickDraftSave('#login-link');
});
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Required, but never shown
Sign up or log in
StackExchange.ready(function () {
StackExchange.helpers.onClickDraftSave('#login-link');
});
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Required, but never shown
Sign up or log in
StackExchange.ready(function () {
StackExchange.helpers.onClickDraftSave('#login-link');
});
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown