using openvpn via an ssh tunnel via http proxy
This is how to use openvpn via an ssh tunnel via http proxy on windows to create a network route between 2 LANs or for you to access your office computer directly from home.
I'm using Windows at the office and Linux at home. You will need Openvpn 2 and putty for this. This is theoratical and should not work, however for some reason you decide to try this and have it work, Let me know. However if you publish your openvpn service on port 22, this should have no issues. Just skip the following ssh step.
To start ssh tunnel with putty. make sure that the http proxy is configured with a keepalive and in the SSH section create a new rule that uses L1194 localhost:1194
The server command you can run on your linux box at home:
openvpn --port 1194 --proto tcp-server --dev tun --comp-lzo --ifconfig 10.1.0.2 10.1.0.1
The client command you run on the workstation in the office is:
openvpn --remote localhost 1194 --http-proxy your.proxy.name 8080 proxy.txt --http-proxy-timeout 5 --dev tun --proto tcp-client --ifconfig 10.1.0.1 10.1.0.2 --comp-lzo
This creates an additional IP address. Test with a ping. Although TCP is not recommended, its still the easiest to setup.
I'm using Windows at the office and Linux at home. You will need Openvpn 2 and putty for this. This is theoratical and should not work, however for some reason you decide to try this and have it work, Let me know. However if you publish your openvpn service on port 22, this should have no issues. Just skip the following ssh step.
To start ssh tunnel with putty. make sure that the http proxy is configured with a keepalive and in the SSH section create a new rule that uses L1194 localhost:1194
The server command you can run on your linux box at home:
openvpn --port 1194 --proto tcp-server --dev tun --comp-lzo --ifconfig 10.1.0.2 10.1.0.1
The client command you run on the workstation in the office is:
openvpn --remote localhost 1194 --http-proxy your.proxy.name 8080 proxy.txt --http-proxy-timeout 5 --dev tun --proto tcp-client --ifconfig 10.1.0.1 10.1.0.2 --comp-lzo
This creates an additional IP address. Test with a ping. Although TCP is not recommended, its still the easiest to setup.
Comments