N
N
Nikita Shinkevich2022-01-09 00:49:27
System administration
Nikita Shinkevich, 2022-01-09 00:49:27

How to bring clients of one subnet to the Internet if the gateway is in another subnet?

Friends, I ask the question honestly after sitting in search of a solution for 2 days ... the brain is already in emergency mode.

61da05a7a5e83081534281.jpeg

We have:
A physical server on which there are 2 network interfaces, one of them is a virtual adapter with a fixed IP and a manually specified gateway to the Internet, and the second adapter is a virtual interface of the VPN server hub, that is, the local area to which the VPN client is connected.

In other words, there are two networks: 10.0.10.0 - from which you can easily access the Internet, and the second subnet 10.0.0.0, from which there is no way to get out through a gateway in another subnet. For computers on the 10.0.0.0 subnet, the default gateway is 10.0.0.5, of course, it pings, that is, the route 0.0.0.0 / 0.0.0.0 / 10.0.0.5 passes from the client, but no further.

I need that if a computer 10.0.0.10 wants to go online (and I can’t specify a gateway on another network by itself as a gateway), the route first reaches the 10.0.0.5 adapter, and then goes to the 10.0.10.10 adapter and which has already access to the network goes through his own gateway 10.0.10.1...

...I'll put a bubble on whoever helps, by God.

PS: Let me remind you once again that 10.0.0.5 and 10.0.10.10 are two adapters on the same physical Windows server!

Answer the question

In order to leave comments, you need to log in

3 answer(s)
M
MaxKozlov, 2022-01-09
@MaxKozlov

Well, for that network card that is 10.0.10.10, set the gateway to 10.0.10.1,
and for 10.0.0.5 do not set anything.
Well, forwarding is allowed.
https://serverfault.com/questions/929081/how-can-i...

A
Alexey Dmitriev, 2022-01-09
@SignFinder

There are two options:
1. On the computer, set the default gateway to 10.0.0.5, on the gateway with two addresses, enable traffic routing and allow transit traffic, and accordingly make the default gateway 10.0.10.1
Another gateway? (with ip 10.0.10.1) must understand what to do with traffic from subnet 10.0.0.0.
2. On the computer, set the default gateway to 10.0.0.5, enable NAT on the gateway with two addresses and allow transit traffic to pass through, and accordingly make the default gateway 10.0.10.1. Another gateway? (with ip 10.0.10.1) in this case will only see packets from its home subnet 10.0.10.0.
PS about the bubble is very funny. If you don’t understand what to do, look for a specialist and pay him money.

Z
Ziptar, 2022-01-10
@Ziptar

>two adapters on one physical Windows server!
Option number one: enable vpn sharing of the interface through its parameters
Option number two: set the role of routing and remote access
Option number three: enable IP forwarding in the registry
Normal option: do not use win as a router

Didn't find what you were looking for?

Ask your question

Ask a Question

731 491 924 answers to any question