<div dir="ltr">Thanks Carl, I appreciate your time and input. </div><div class="gmail_extra"><br><div class="gmail_quote">On Tue, Jun 23, 2015 at 4:55 PM, Carl T. Miller <span dir="ltr"><<a href="mailto:carl@carltm.com" target="_blank">carl@carltm.com</a>></span> wrote:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">No, I don't like the idea of using two vpns. Is<br>
there any chance they will let you set up openvpn<br>
in addition to the original vpn? If so, people<br>
would need to decide which one to use at any given<br>
time.<br>
<br>
If you need to use the existing vpn, I'd go with<br>
the ssh solution. It takes some planning, but<br>
it's rather easy to use.<br>
<span class="HOEnZb"><font color="#888888"><br>
c<br>
</font></span><div class="HOEnZb"><div class="h5"><br>
<br>
<br>
Chad Crabtree wrote:<br>
> Ah, regarding the VPN, we already have to vpn to get to the first machine,<br>
> and there's another VPN to get to the internal machines, but the first vpn<br>
> is instable and causes the second to break, usually pretty quick. Who'd<br>
> have thunk that nesting VPN's would suck so bad :P.<br>
><br>
> I hadn't thought to try using another VPN because of that. Do you think<br>
> in<br>
> light of this new information, do you think open vpn would still be a good<br>
> option?<br>
><br>
> On Tue, Jun 23, 2015 at 4:39 PM, Carl T. Miller <<a href="mailto:carl@carltm.com">carl@carltm.com</a>> wrote:<br>
><br>
>> Two thoughts come to mind immediately. One is to use<br>
>> ssh and set up tunnels for the ssh and socks connections.<br>
>> The other is to install and use OpenVPN.<br>
>><br>
>> If the developers are very savvy, probably the ssh<br>
>> solution would be easier to implement and maintain.<br>
>> The openvpn solution would take longer to set up,<br>
>> but would be easier for the end users.<br>
>><br>
>> c<br>
>><br>
>><br>
>> Chad Crabtree wrote:<br>
>> > So I'm tasked with building a proxy that will route ssh and HTTP(s)<br>
>> > through<br>
>> > a public facing server into the safe side of the network to support<br>
>> > developers. My first thought was ssh socks proxy to get the job done,<br>
>> but<br>
>> > I've been doing some research and it seems that it can be done through<br>
>> an<br>
>> > HTTP proxy too, corkscrew is one I've seen so far.<br>
>> ><br>
>> > I was hoping I could take advantage of the wiser and more experienced<br>
>> > among<br>
>> > us for some alternatives?<br>
>> ><br>
>> > - Socks Proxy?<br>
>> > - Http Proxy?<br>
>> > - ????<br>
>> ><br>
>> > Whats your suggestion, I have a private network with one computer in<br>
>> the<br>
>> > DMZ (to restate it 'simply') and I need to allow N users to connect to<br>
>> > their personal machine on the inside from anywhere.<br>
>> ><br>
>> ><br>
>> > Thanks for your time.<br>
>> ><br>
>> > --<br>
>> > Chad Crabtree<br>
>> > <a href="tel:734-658-5338" value="+17346585338">734-658-5338</a><br>
>> > _______________________________________________<br>
>> > washlug mailing list<br>
>> > <a href="mailto:washlug@washlug.org">washlug@washlug.org</a><br>
>> > <a href="http://linux.marcdatabase.com/mailman/listinfo/washlug" rel="noreferrer" target="_blank">http://linux.marcdatabase.com/mailman/listinfo/washlug</a><br>
>> ><br>
>><br>
>><br>
>> _______________________________________________<br>
>> washlug mailing list<br>
>> <a href="mailto:washlug@washlug.org">washlug@washlug.org</a><br>
>> <a href="http://linux.marcdatabase.com/mailman/listinfo/washlug" rel="noreferrer" target="_blank">http://linux.marcdatabase.com/mailman/listinfo/washlug</a><br>
>><br>
><br>
><br>
><br>
> --<br>
> Chad Crabtree<br>
> <a href="tel:734-658-5338" value="+17346585338">734-658-5338</a><br>
> _______________________________________________<br>
> washlug mailing list<br>
> <a href="mailto:washlug@washlug.org">washlug@washlug.org</a><br>
> <a href="http://linux.marcdatabase.com/mailman/listinfo/washlug" rel="noreferrer" target="_blank">http://linux.marcdatabase.com/mailman/listinfo/washlug</a><br>
><br>
<br>
<br>
_______________________________________________<br>
washlug mailing list<br>
<a href="mailto:washlug@washlug.org">washlug@washlug.org</a><br>
<a href="http://linux.marcdatabase.com/mailman/listinfo/washlug" rel="noreferrer" target="_blank">http://linux.marcdatabase.com/mailman/listinfo/washlug</a><br>
</div></div></blockquote></div><br><br clear="all"><div><br></div>-- <br><div class="gmail_signature">Chad Crabtree<div>734-658-5338<br><div><img src="https://lh5.ggpht.com/_nIocp5t0rLE/TJJhI_VLSQI/AAAAAAAAAQE/8k7QS32Dlgc/s800/n100000187614142_3561.jpg"><br></div></div></div>
</div>