Broadband-Hamnet™ Forum :: Problems & Answers
Welcome Guest   [Register]  [Login]
«StartPrev12NextEnd»
 Subject :VPN.. 2013-07-05- 09:11:37 
SM7I
Member
Joined: 2012-04-30- 14:56:55
Posts: 79
Location: JO65mo
 

Now the first VPN between two nodes in SM7 is reality. It is setup between SM7I (me) and SM7MMJ. We are now spreading the word to other hams in Sweden to join !!!!

IP Logged
IT infrastructure and security professional
 Subject :Re:VPN.. 2013-07-09- 08:37:31 
SM7I
Member
Joined: 2012-04-30- 14:56:55
Posts: 79
Location: JO65mo
 
Now the mesh is growing. We already have a few nodes in northern Malmö as well as the village of Bara. Next out are a few more nodes in the city of Malmö as well as a few in the vincinity of Ystad. Also nodes in Stockholm area will connect soon. The first service to be offered will most probably be a DX cluster and more will come. Now we roll !!!
IP Logged
IT infrastructure and security professional
 Subject :Re:VPN.. 2013-07-09- 09:00:35 
K5KTF
Admin
Joined: 2010-01-18- 23:04:04
Posts: 266
Location: 5' from this webserver
  

Any way I can get the Lat/Lon/Nodenames for the Googlemap?

We have very few non-USA nodes on there, and Id like to show this isnt just a Texas thing, or a US thing :-)

Email me off list at jim@K5KTF.com Subject of Foreigners on the  Googlemap Cool


73!

KTF

IP Logged
B-) Jim K5KTF EM10bm Cedar Park, TX :star:
 Subject :Re:VPN.. 2013-08-08- 03:43:04 
W4WWS
Member
Joined: 2013-06-08- 20:15:29
Posts: 10
Location
how did you do the VPN? did you install it on the mesh node or are you using a network computer to vpn thru? I sure could use some help because I would like to link a system over in Illinois . Can you help sir? Thanks, Steve "W4WWS"
IP Logged
 Subject :Re:VPN.. 2013-08-08- 04:54:20 
SM7I
Member
Joined: 2012-04-30- 14:56:55
Posts: 79
Location: JO65mo
 
Everything is done on the node. If I get the time tonight I will post my documentation here.
IP Logged
IT infrastructure and security professional
 Subject :Re:VPN.. 2013-08-08- 07:14:43 
W4WWS
Member
Joined: 2013-06-08- 20:15:29
Posts: 10
Location
That would be great..Thank you, Thanks, Steve "W4WWS"
IP Logged
 Subject :Re:VPN.. 2013-08-08- 07:56:06 
SM7I
Member
Joined: 2012-04-30- 14:56:55
Posts: 79
Location: JO65mo
 

I tried to put the documentation in here, but it looks like crap so I emailed it to you instead.

If anyone else is interested, just drop me a mail at: sm7i.ham@gmail.com


73sss SM7I

IP Logged
Last Edited On: 2013-08-08- 07:57:39 By SM7I for the Reason looked like crap
IT infrastructure and security professional
 Subject :Re:VPN.. 2013-08-24- 02:24:13 
VE3RRD
Member
Joined: 2013-06-19- 16:54:27
Posts: 44
Location: Barrie, Ontario
 
You can download Johan SM7I's procedure on setting up a GRE tunnel between nodes at: http://www.old.barriearc.com/Files/Establishing GRE Tunneling Between Broadband-Hamnet Nodes.pdf
IP Logged
AL - VE3RRD
http://barrie-wax-group.dyndns.org
 Subject :Re:VPN.. 2013-09-11- 03:20:51 
wc3xs
Member
Joined: 2013-06-06- 22:25:20
Posts: 13
Location
I followed your docs and this worked flawlessly. I am using a local DMVPN for AMPRnet addresses between my office and house as the backbone. With your configuration, have you seen any issues or problems? I have not had any issues. I am a bit surprised this thread isn't seeing more action with others trying this method. Thanks Jesse - WC3XS
IP Logged
 Subject :Re:VPN.. 2013-10-27- 07:04:14 
SM7I
Member
Joined: 2012-04-30- 14:56:55
Posts: 79
Location: JO65mo
 
Please note that the documentation and instructions has been revised and function improved since last time so if you want an up2date copy just send me an email.
IP Logged
IT infrastructure and security professional
 Subject :Re:VPN.. 2013-10-28- 06:22:59 
SM7I
Member
Joined: 2012-04-30- 14:56:55
Posts: 79
Location: JO65mo
 

The HowTo for GRE tunneling can now be downloaded from the link below. This will be updated when needed so be sure to check in from time to another.


http://www.ssra.se/upload/hsmm%20scripts.pdf

IP Logged
Last Edited On: 2013-10-28- 06:23:36 By SM7I for the Reason
IT infrastructure and security professional
 Subject :Re:VPN.. 2013-12-13- 03:47:01 
VA3RRZ
Member
Joined: 2013-08-26- 06:54:56
Posts: 15
Location: L'Orignal, Ontario, Canada

Hi All,

Newbie here.  I've been working on trying to Tunnel two BBHN nodes using the docs form Johan-SM7I and from Al-VE3RRD.  Both docs have been helpful but not being a Linux person, having some difficulties understanding how the downloaded packages work.  Once downloaded through the Web Gui onto the node, does it install automatically or did I miss a step?  Also Ill be running two nodes DCHP through a Internet router PPPOE using DHCP and I'm not sure if I need to also create a S52update file if I followed VE3RRD's directions.  Thanks very much for any help.  Ron

IP Logged
 Subject :Re:VPN.. 2013-12-14- 12:13:37 
VE3RRD
Member
Joined: 2013-06-19- 16:54:27
Posts: 44
Location: Barrie, Ontario
 

A new version 2 on the procedure of setting up GRE tunneling between nodes using Johan SM7I's method can be found at: http://www.old.barriearc.com/Files/Establishing_GRE_Tunneling_Between_v0.4.3_Broadband-Hamnet_Nodes.pdf

IP Logged
Last Edited On: 2013-12-14- 12:14:15 By VE3RRD for the Reason
AL - VE3RRD
http://barrie-wax-group.dyndns.org
 Subject :Re:VPN.. 2013-12-14- 14:24:25 
VA3RRZ
Member
Joined: 2013-08-26- 06:54:56
Posts: 15
Location: L'Orignal, Ontario, Canada

Thanks Al. I've downloaded them and I tried to make the necessary changes.

I don't quite understand the S51tun file configuration.  The instruction says that the Internet router provides the node an IP in the range of 192.168.X.X.  Mine and the other end gets it in the range of 192.168.1.X  netmask 255.255.255.0 Are we to change the Internet Routers netmask to reflect this?

Ron





IP Logged
Last Edited On: 2013-12-14- 16:49:48 By VA3RRZ for the Reason
 Subject :Re:VPN.. 2013-12-15- 03:38:27 
VE3RRD
Member
Joined: 2013-06-19- 16:54:27
Posts: 44
Location: Barrie, Ontario
 
Hi Ron - I'm no expert at this stuff; but in both the S51tun and S52update files, the IP's assigned to the tunnel can be 192.168.1.x but don't change the netmask of the router. The netmask of 255.255.255.252 is only entered as part of these two scripts (in the ifconfig lines) because they are establishing a point-to-point tunnel (this netmask only permits 4 IP's with 2 usable host addresses - the two ends of the tunnel). Hope this helps. 73
IP Logged
AL - VE3RRD
http://barrie-wax-group.dyndns.org
 Subject :Re:VPN.. 2013-12-15- 05:08:25 
VA3RRZ
Member
Joined: 2013-08-26- 06:54:56
Posts: 15
Location: L'Orignal, Ontario, Canada
Al: Yes it does help. I understand networking pretty good, I'm still getting my feet wet with the programming of scripts. I simply wasn't sure where these in the script were coming from because there is no mention how the router was getting it's IP address from the Internet router and what subnet mask you were using. So that being said, and if I now understand correctly, if I want to follow the scripts in the document as is, I just need to change my subnet mask on my Internet router to 255.255.0.0. Correct? And if that's the case, then I would highly recommend it to avoid any possible conflicts with current devices connected to the Internet router running on 1.x network. I'll give it a try and see what happens. The last question is do both the Tunneling routers have to be properly configured and running before one sees the other? Not to pass traffic but just see the node. Thanks very much for your help. We're really anxious in getting our Mesh deployed throughout the counties here.
IP Logged
 Subject :Re:VPN.. 2013-12-15- 08:29:36 
VE3RRD
Member
Joined: 2013-06-19- 16:54:27
Posts: 44
Location: Barrie, Ontario
 
Hi Ron, The "internet" routers used in our mesh network are all using a netmask of 255.255.255.0 on the LAN side and our mesh node routers when in NAT mode are also using this same net mask on the LAN side. I don't think we are using 255.255.0.0 as a netmask anywhere in our mesh network here in Barrie. In my case, my internet router is issuing an IP of 192.168.2.36 (netmask 255.255.255.0) to my mesh node I use for GRE tunneling. Therefore (as shown in my document) I used 192.168.x.x for my tunnel IP's. If you are looking at Johan's document, then yes he shows that they are using 1.1.1.x IPs (netmask 255.255.255.252) for the tunnel. Hope I answered your question. 73
IP Logged
AL - VE3RRD
http://barrie-wax-group.dyndns.org
 Subject :Re:VPN.. 2013-12-15- 15:54:10 
VA3RRZ
Member
Joined: 2013-08-26- 06:54:56
Posts: 15
Location: L'Orignal, Ontario, Canada
Thanks Al. I guess I'm just not familiar with the GRE tunneling aspect. But I'll get there. So far, everything has been reconfigured on both tunnel nodes and we now, on the OLSR page, see the Tun1 come up with the IP 192.168.80.1 on mine and 192.168.80.2 on the remote node. I've manually ran some of the IP checking scripts from the latest Document to see if the proper responses comes up and they do. However, we are not seeing each other in the mesh status. Now, I did read that the tunneling won't work well with BBHN V1.0.0, but our routers were already configured with it and I thought to leave them as is just for testing the connectivity of the routers through the tunnel before re-flashing back to V0.43. Could this be the reason or should we at least see each other even in the newest firmware version? Also, is there a way to test different components of the installation, the configuration of the nodes, the port forwarding of the Internet router or other modules? I understand that so many things could be the cause, but like anything, there must be a methodical procedure for trouble shouting. Thanks again for all your help. We're getting closer and I'll keep re-reading. Ron
IP Logged
 Subject :Re:VPN.. 2013-12-15- 21:25:12 
SM7I
Member
Joined: 2012-04-30- 14:56:55
Posts: 79
Location: JO65mo
 

Really nice to see that this function is spreading.


From being a very local solution between two locations in south of SM to be an international success :)


This idea really initiated between me and a fellow ham and as we had no RF path I started investigating the possibilities to set up some form of tunneling between us as a temporarily solution :)

IP Logged
Last Edited On: 2013-12-15- 21:26:18 By SM7I for the Reason
IT infrastructure and security professional
 Subject :Re:VPN.. 2013-12-16- 01:06:47 
VA3RRZ
Member
Joined: 2013-08-26- 06:54:56
Posts: 15
Location: L'Orignal, Ontario, Canada
Great job Johan! Tunneling will really help us get the whole region out here up and running in no time. We have the routers to get us going. We will start from the extremes ends pf the region and work our way towards the centre, installing Wi-Fi nodes along the way. Our ARES group is really excited and it will also help us maintain the Ham band in the 2.4GHz. 73 de ron
IP Logged
«StartPrev12NextEnd»
Page # 


Powered by ccBoard


SPONSORED AD: