Recommended Posts

Hey

Let me see how I explain this:

Network 1:

WAN add: 88.34.12.3

Router add: 192.168.100.100

Netmask: 255.255.255.0

Clients (for examples): 192.168.100.2, 192.168.100.3, etc

Network 2:

WAN add: 94.55.98.3

Router add: 192.168.1.1

Netmask: 255.255.255.0

Clients (for examples): 192.168.1.2, 192.168.1.4, etc

Now how can I "join" both networks so when Im at a PC with 192.168.100.2 I can ping (and access) 192.168.1.4?

VLANs? Routes? Subnetting?

Thanks!

If these two networks can be physically connected and the equipment is capable of routes, that is the way to go.

If the network are separated by public internet space, a VPN router at end will be your only option.

VPN would work in either case though. It just seems a little silly to VPN in scenario 1.

If these two networks can be physically connected and the equipment is capable of routes, that is the way to go.

If the network are separated by public internet space, a VPN router at end will be your only option.

VPN would work in either case though. It just seems a little silly to VPN in scenario 1.

I think I have have explained myself incorrectly.

There is only ONE scenario. 2 networks seperated by a public space (internet would be the case) but I want to them to be seeable and access each other freely.

Besides VPN (which I knew of :) ) is there any other choice (irrelevent if it is better ot worst; I just want to be able to explain it and give options)?

Also something that can be done freely; Nothing proprietary

I went ahead and drew this out (yes I know my drawing skill are great :p )

This is basically what I have. Just to show you a bit what I mean :)

Now, I knew about VPN and I understand if it is the only way but theres no other technology out there? I would understand it being "difficult" as with NAT, Firewalls, etc a direct connection like this would be impossible but just to know :)

Also, how can I configure a VPN via simply command line? One of the reasons I asked for alternatives to VPN is because on some of these I only have access to a command line and Im not sure if Linux distros by default include a VPN server/client.

Thanks to all that have helped.

I went ahead and drew this out (yes I know my drawing skill are great :p )

This is basically what I have. Just to show you a bit what I mean :)

Now, I knew about VPN and I understand if it is the only way but theres no other technology out there? I would understand it being "difficult" as with NAT, Firewalls, etc a direct connection like this would be impossible but just to know :)

Also, how can I configure a VPN via simply command line? One of the reasons I asked for alternatives to VPN is because on some of these I only have access to a command line and Im not sure if Linux distros by default include a VPN server/client.

Thanks to all that have helped.

VPN Routers at each end, static IP for each sites Internet connection, create a tunnel, done. Google -

SRXN3205

I went ahead and drew this out (yes I know my drawing skill are great :p )

This is basically what I have. Just to show you a bit what I mean :)

Now, I knew about VPN and I understand if it is the only way but theres no other technology out there? I would understand it being "difficult" as with NAT, Firewalls, etc a direct connection like this would be impossible but just to know :)

Also, how can I configure a VPN via simply command line? One of the reasons I asked for alternatives to VPN is because on some of these I only have access to a command line and Im not sure if Linux distros by default include a VPN server/client.

Thanks to all that have helped.

You say you know what VPN is but then you talk about configuring it via command line. Unless you have some moderately sophisticated server at each end, what in the world are you thinking?

VPN is it. There's nothing wrong with the technology so what is the hesitation?

There are software VPN solutions like Hamachi, but just do it right and get hardware.

Edit after seeing picture: So you already have routers at each end. Well, what model are they?

VPN Routers at each end, static IP for each sites Internet connection, create a tunnel, done. Google -

SRXN3205

Ah VPN routers.....thats what I am trying to avoid!

Not really avoid, just if it cant be done any other way, it cant be done.

The SRXN3205 is kind of cheap and used at a domestic level right?; We are looking for more industrial "module" type of routers. Google - NetModule NB1600

You say you know what VPN is but then you talk about configuring it via command line. Unless you have some moderately sophisticated server at each end, what in the world are you thinking?

VPN is it. There's nothing wrong with the technology so what is the hesitation?

Edit after seeing picture: So you already have routers at each end. Well, what model are they?

This information is both unknown (actually I know one end only but im looking for something that wouldnt matter) and unreplacable :) Buying the 2 cheapest DD-WRT routers, turning on their VPN features and calling it a day wont do justice here....

Even if it is VPN, there has to be SOME configuration at the end to end point: Someone listening and another one sending (in a PTPP).

I guess VPN then is the only way.

I guess VPN then is the only way.

Once again, yes.

Buying the 2 cheapest DD-WRT routers, turning on their VPN features and calling it a day wont do justice here....

Why not?

Even if it is VPN, there has to be SOME configuration at the end to end point: Someone listening and another one sending (in a PTPP).

Of course there's configuration, but to ask how to do it via command line implies you know the equipment at each end.

Oh, what about if internet is not in the middle? (Take the picture I put there and instead of a circle that says internet replace it with a line connecting both routers)

This is nothing about the situation; Just personal intrest to learn more.

Where would anything get out to the internet then?

Oh, what about if internet is not in the middle? (Take the picture I put there and instead of a circle that says internet replace it with a line connecting both routers)

This is nothing about the situation; Just personal intrest to learn more.

If routing is configured correctly, then you'd be all set. Of course both router interfaces talking to each other will have to be on the same subnet.

you are best off doing this at the firewall. not to one or another pc. If your firewall is cli based, like say a cisco asa, then yes it can be done at a command line through either telnet or ssh. That is the way I would recommend setting it up when you need site a access to site b.

Why not?

Not an acceptable option. I guess then (preconfigured) VPN routers are the only way to do this

Of course there's configuration, but to ask how to do it via command line implies you know the equipment at each end.

I didnt directly imply anything :) I simply asked if it was possible other ways than VPN.

Where would anything get out to the internet then?

It wouldnt. It would be 2 networks (192.168.100.x and 192.168.1.x) trying to communicate with each other.

There is also GRE tunnelling, which is insecure unless wrapped inside an IPsec tunnel. That is possible on Linux. On Windows Server you could use it's built in VPN and some clever routes.

Problem is GRE is Cisco depenent

If routing is configured correctly, then you'd be all set. Of course both router interfaces talking to each other will have to be on the same subnet.

The same subnet or same subnet mask (which may be the same thing and Ive mixed up terms)

Both, in order to be on the same subnet the having the same subnet mask is the first requirement.

Why are you talking about this? the solution is to be on a vpn. You would need routeable interfaces, if everything is on the same subnet or supernet you take that ability out. I haven't seen in a long time where a network is point to point, everything is frame or mpls or vpn...all of these technologies require route-able networks not in the same subnet(s).

Why are you talking about this? the solution is to be on a vpn, even in a point to point network the subnets wouldn't be the same as they would need to route. You would need routeable interfaces, if everything is on the same subnet or supernet you take that ability out. I haven't seen in a long time where a network is point to point, everything is frame or mpls or vpn...all of these technologies require route-able networks not in the same subnet(s).

I'm responding to the question he asked; which I quoted in my first post.

Oh, what about if internet is not in the middle? (Take the picture I put there and instead of a circle that says internet replace it with a line connecting both routers)

This is nothing about the situation; Just personal intrest to learn more.

In this instance; then subnets do matter; yes or no?

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • Yeah, this is absolutely nothing new and EA have done it before. Burnout Paradise, released in 2008, had dynamic advertising billboards that were updated via the internet and targeted people based on location and what EA knew about them from their profile. It was particularly notable for the fact that the Obama presidential campaign ran ads in the game, in an attempt to reach a younger audience who didn't watch broadcast TV any more. It was by no means the first though. Battlefield 2142 from 2006 had the same thing. In fact, Neowin wrote a story about it back then. https://www.neowin.net/news/ba...-in-game-ads-clarification/
    • This is obviously aimed at the education where Apple has lost so much ground to Chromebooks in the last few years, but unless they come up with a comparable management system for education why would anyone switch back?
    • Here's how we arrived at that claim: Note that this is just Play Store downloads. The app is also available on the Galaxy App Store
    • Google Play states the app had more than 50 million downloads. What other metric do you suggest should be used?
    • MSN defined our generation in some ways, kind of like Snapchat and TikTok have done for future generations. I have great memories of the MSN era in the late 90s / early 2000s. In the UK everyone seemed to come home from School and go on MSN for the evening. We didn't really have mobile phones then, so other than going and knocking on your friends door it was a totally new way of interacting with people. I also loved how I could talk to people I’d met playing online games from around the world. Inviting people to NetMeeting and messing about with the shared white board and webcams was pretty fun, even if webcams only ran at a couple of fps over dial-up. All the random things you could do with MsgPlus! were really fun - I suspect that made a few people jump with /shello randomly blasting Mr Hankey out their speakers! Maybe I’m just nostalgic, however I do feel the internet and computers were more fun back then.
  • Recent Achievements

    • One Year In
      Console General earned a badge
      One Year In
    • One Year In
      Twozo Technologies earned a badge
      One Year In
    • One Month Later
      Twozo Technologies earned a badge
      One Month Later
    • Week One Done
      Twozo Technologies earned a badge
      Week One Done
    • Veteran
      branfont went up a rank
      Veteran
  • Popular Contributors

    1. 1
      +primortal
      531
    2. 2
      +Edouard
      206
    3. 3
      PsYcHoKiLLa
      130
    4. 4
      Steven P.
      90
    5. 5
      neufuse
      74
  • Tell a friend

    Love Neowin? Tell a friend!