Page 1 of 2 12 LastLast
Results 1 to 10 of 13
  1. #1
    Untangler
    Join Date
    Apr 2009
    Posts
    76

    Default Bypass rule for internal traffic

    I was looking through several threads on here addressing slow site-to-site VPN connections and came across this line in one of them:

    "Also, you may consider configuring bypass rules for all traffic sourced from and destined to each internal IP space you have."

    How do I go about creating this rule? I'd like to try this.

    Thanks for your help

  2. #2
    Untangle Junkie dmorris's Avatar
    Join Date
    Nov 2006
    Location
    San Mateo, CA
    Posts
    11,691

    Default

    config->networking->advanced->bypass rules

    and click "add"
    Attention: Support and help on the Untangle Forums is provided by volunteers and community members like yourself.
    If you need Untangle support please call or email support@untangle.com

  3. #3
    Untangler
    Join Date
    Apr 2009
    Posts
    76

    Default

    That much I do know, it's the rest that I'm unclear about.

  4. #4
    Master Untangler Big D's Avatar
    Join Date
    Nov 2008
    Posts
    709

    Default

    Finally found it.

    This makes SMTP outbound from a mail server bypass the rack. Primary reason. The policy rack used to do this. Since v.8.0 policy rack for this function was dumped in favor for bypass rules but no default bypass rules but no default rules get loaded. This keeps the outbound SMTP traffic from showing up in the spam filter log which keeps it cleaner.

    Not specific for you but should give you a general idea
    Attached Images Attached Images
    Last edited by Big D; 06-17-2011 at 03:21 PM.
    The beatings shall continue until morale improves!

  5. #5
    Untangler
    Join Date
    Apr 2009
    Posts
    76

    Default

    So for my purposes would the bypass contain Destined Local and Source Interface: Internal??

  6. #6
    Untangler
    Join Date
    Apr 2009
    Posts
    76

    Default

    Or should it be Source Interface: VPN?

  7. #7
    Untangle Junkie dmorris's Avatar
    Join Date
    Nov 2006
    Location
    San Mateo, CA
    Posts
    11,691

    Default

    Quote Originally Posted by jaypeetee View Post
    Or should it be Source Interface: VPN?
    Not unless you're talking about Untangle's OpenVPN site-to-site.

    You need to create a rule that matches the traffic in question and bypasses it. From Untangle's perspective where is the traffic coming from and going to? Create rules that match that.
    Attention: Support and help on the Untangle Forums is provided by volunteers and community members like yourself.
    If you need Untangle support please call or email support@untangle.com

  8. #8
    Untangler
    Join Date
    Apr 2009
    Posts
    76

    Default

    I am indeed talking about Untangle's OpenVPN.

  9. #9
    Untangler
    Join Date
    Apr 2009
    Posts
    76

    Default

    Can someone clear this up for me?

  10. #10
    Untangle Junkie dmorris's Avatar
    Join Date
    Nov 2006
    Location
    San Mateo, CA
    Posts
    11,691

    Default

    I'm sorry we can't help you unless you answer the questions so we can help you.
    Remember, we know nothing about your network, only what you tell us.
    Attention: Support and help on the Untangle Forums is provided by volunteers and community members like yourself.
    If you need Untangle support please call or email support@untangle.com

Page 1 of 2 12 LastLast

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  

SEO by vBSEO 3.6.0 PL2