Author
Message
pksml DD-WRT Novice Joined: 09 Dec 2014 Posts: 28
Posted: Thu Dec 11, 2014 19:59 Post subject: Solved - Understanding Routing Table with OpenVPN
Network layout: Laptop (OpenVPN client) <-> router with 192.168.1.xxx subnet <-> internet <-> Home router (running DD-WRT with OpenVPN server) with 192.168.11.xxx subnet
The VPN server is operating in layer 2 mode (bridge). All of my internet traffic passes through the VPN tunnel. My home router & VPN have an external IP of 68.64.127.82.
My laptop (VPN client) has an IP address on the physical LAN of 192.168.1.40. My IP address on the VPN is 192.168.11.50.
Here is my question: What makes all the internet traffic pass through the VPN tunnel?
Code: Network Destination Netmask Gateway Interface Metric
0.0.0.0 0.0.0.0 192.168.1.1 192.168.1.40 20
0.0.0.0 128.0.0.0 192.168.11.1 192.168.11.50 30
The first line says everything should go the router I'm physically connected to (not the VPN router).
The second line makes no sense to me. The 192.168.11.xxx subnet is on my VPN.
How can you have a 0.0.0.0 destination with a netmask?!?
Question 2: What does the 128.0.0.0 netmask mean with a 0.0.0.0 destination?
Question 3: Why does the second line take priority over the first line?
Thanks for your help!
----------
Code: Here is my full routing table:
C:\Users\owner>route print
===========================================================================
Interface List
19...00 ff 79 ee e1 6b ......TAP-Windows Adapter V9
10...00 1a 4b 13 d2 92 ......Broadcom NetLink (TM) Gigabit Ethernet
1...........................Software Loopback Interface 1
===========================================================================
IPv4 Route Table
===========================================================================
Active Routes:
Network Destination Netmask Gateway Interface Metric
0.0.0.0 0.0.0.0 192.168.1.1 192.168.1.40 20
0.0.0.0 128.0.0.0 192.168.11.1 192.168.11.50 30
68.64.127.82 255.255.255.255 192.168.1.1 192.168.1.40 20
127.0.0.0 255.0.0.0 On-link 127.0.0.1 306
127.0.0.1 255.255.255.255 On-link 127.0.0.1 306
127.255.255.255 255.255.255.255 On-link 127.0.0.1 306
128.0.0.0 128.0.0.0 192.168.11.1 192.168.11.50 30
192.168.1.0 255.255.255.0 On-link 192.168.1.40 276
192.168.1.40 255.255.255.255 On-link 192.168.1.40 276
192.168.1.255 255.255.255.255 On-link 192.168.1.40 276
192.168.11.0 255.255.255.0 On-link 192.168.11.50 286
192.168.11.50 255.255.255.255 On-link 192.168.11.50 286
192.168.11.255 255.255.255.255 On-link 192.168.11.50 286
224.0.0.0 240.0.0.0 On-link 127.0.0.1 306
224.0.0.0 240.0.0.0 On-link 192.168.1.40 276
224.0.0.0 240.0.0.0 On-link 192.168.11.50 286
255.255.255.255 255.255.255.255 On-link 127.0.0.1 306
255.255.255.255 255.255.255.255 On-link 192.168.1.40 276
255.255.255.255 255.255.255.255 On-link 192.168.11.50 286
===========================================================================
Here is my ipconfig:
Code: Windows IP Configuration
Ethernet adapter Local Area Connection 2:
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : TAP-Windows Adapter V9
Physical Address. . . . . . . . . : 00-FF-79-EE-E1-6B
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
Link-local IPv6 Address . . . . . : fe80::c1f8:5d3:e14:dba6%19(Preferred)
IPv4 Address. . . . . . . . . . . : 192.168.11.50(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Lease Obtained. . . . . . . . . . : Thursday, December 11, 2014 11:20:53 AM
Lease Expires . . . . . . . . . . : Friday, December 11, 2015 11:20:53 AM
Default Gateway . . . . . . . . . :
DHCP Server . . . . . . . . . . . : 192.168.11.0
DHCPv6 IAID . . . . . . . . . . . : 520159097
DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-16-A1-5A-F6-00-1A-4B-6B-D2-7C
DNS Servers . . . . . . . . . . . : fec0:0:0:ffff::1%1
fec0:0:0:ffff::2%1
fec0:0:0:ffff::3%1
NetBIOS over Tcpip. . . . . . . . : Enabled
Ethernet adapter Local Area Connection:
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Broadcom NetLink (TM) Gigabit Ethernet
Physical Address. . . . . . . . . : 00-1A-4B-13-D2-92
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
Link-local IPv6 Address . . . . . : fe80::61c0:c604:f3e5:498%10(Preferred)
IPv4 Address. . . . . . . . . . . : 192.168.1.40(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Lease Obtained. . . . . . . . . . : Thursday, December 11, 2014 11:20:35 AM
Lease Expires . . . . . . . . . . : Friday, December 12, 2014 11:20:35 AM
Default Gateway . . . . . . . . . : 192.168.1.1
DHCP Server . . . . . . . . . . . : 192.168.1.1
DHCPv6 IAID . . . . . . . . . . . : 234887755
DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-16-A1-5A-F6-00-1A-4B-13-D2-92
DNS Servers . . . . . . . . . . . : 192.168.1.1
NetBIOS over Tcpip. . . . . . . . : Enabled
_________________Stephen
Need a LitlURL ?
http://CodeBin.yi.org Last edited by pksml on Thu Dec 11, 2014 21:00; edited 2 times in total
Back to top
Sponsor
pksml DD-WRT Novice Joined: 09 Dec 2014 Posts: 28
Posted: Thu Dec 11, 2014 20:53 Post subject:
Gotcha! Makes perfect sense now. I was wondering why a traceroute of IP addresses above 128.0.0.1 still went through the VPN. The 128.0.0.0/1 route entry went right over my head. Thanks for your help yet again eibgrad! _________________Stephen
Need a LitlURL ?
http://CodeBin.yi.org
Back to top
pksml DD-WRT Novice Joined: 09 Dec 2014 Posts: 28
Posted: Thu Dec 11, 2014 21:23 Post subject:
Related question...
How does Windows process the routing table?
Would it start with the tightest netmask (i.e. from 255.255.255.255 and down) and see which one fits first? _________________Stephen
Need a LitlURL ?
http://CodeBin.yi.org
Back to top
pksml DD-WRT Novice Joined: 09 Dec 2014 Posts: 28
Posted: Thu Dec 11, 2014 21:28 Post subject:
Awesome! I feel like I'm starting to get this TCP/IP stuff _________________Stephen
Need a LitlURL ?
http://CodeBin.yi.org
Back to top