Page 1 of 1

Ubuntu, SE: access lan intefaces on client PC

Posted: Sat Apr 11, 2026 12:52 pm
by trysoft
Hi,

I have installed SE on Ubuntu 24 with BRIDGE L2 mode.

Image

ping between clients is OK

PC1 - 192.168.249.38 - main, it must have access to PC2 lan interfaces

PC2 - 192.168.249.139 - there 2 interfaces:
  • 192.168.xxx.xxx
  • 169.254.xxx.xxx
IPEnableRouter=1 in regedit

How i can access to PC2 interfaces from PC1?
Is it possibly do it without local bridge creating?

ip a

Code: Select all

1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN group default qlen 1000
    link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
    inet 127.0.0.1/8 scope host lo
       valid_lft forever preferred_lft forever
    inet6 ::1/128 scope host noprefixroute
       valid_lft forever preferred_lft forever
2: ens3: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc fq_codel state UP group default qlen 1000
    link/ether 52:54:00:f7:6e:d3 brd ff:ff:ff:ff:ff:ff
    altname enp0s3
    inet 185.180.110.61/24 brd 185.180.110.255 scope global ens3
       valid_lft forever preferred_lft forever
    inet6 fe80::5054:ff:fef7:6ed3/64 scope link
       valid_lft forever preferred_lft forever
3: tap_soft: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc fq_codel state UNKNOWN group default qlen 1000
    link/ether 9a:35:d2:cf:61:39 brd ff:ff:ff:ff:ff:ff
    inet 192.168.249.1/24 scope global tap_soft
       valid_lft forever preferred_lft forever
    inet6 fe80::5ce9:abff:fea5:f4f1/64 scope link
       valid_lft forever preferred_lft forever

Re: Ubuntu, SE: access lan intefaces on client PC

Posted: Sat Apr 11, 2026 5:33 pm
by trysoft
net.ipv4.ip_forward=1

iptables -S

Code: Select all

-P INPUT ACCEPT
-P FORWARD ACCEPT
-P OUTPUT ACCEPT
-A INPUT -i tap_soft -p udp -m udp --dport 67 -m state --state NEW,ESTABLISHED -j ACCEPT
-A INPUT -i tap_soft -p tcp -m tcp --sport 53 -m state --state ESTABLISHED -j ACCEPT
-A INPUT -i tap_soft -p udp -m udp --sport 53 -m state --state ESTABLISHED -j ACCEPT
-A OUTPUT -s 192.168.249.0/24 -o tap_soft -p tcp -m tcp --dport 53 -m state --state NEW,ESTABLISHED -j ACCEPT
-A OUTPUT -s 192.168.249.0/24 -o tap_soft -p udp -m udp --dport 53 -m state --state NEW,ESTABLISHED -j ACCEPT
/etc/dnsmasq.conf

Code: Select all

interface=tap_soft
dhcp-range=tap_soft,192.168.249.10,192.168.249.200,12h
dhcp-option=3
dhcp-option=tap_soft,6,1.1.1.1,8.8.8.8
dhcp-option=121,192.168.0.0/16,192.168.249.1,172.16.0.0/12,192.168.249.1,10.0.0.0/8,192.168.249.1

Re: Ubuntu, SE: access lan intefaces on client PC

Posted: Sat Apr 11, 2026 5:40 pm
by trysoft
vpnserver.service

Code: Select all

[Unit]
Description=SoftEther VPN Server
After=network.target

[Service]
Type=forking
ExecStart=/opt/vpnserver/vpnserver start
ExecStartPost=/bin/sleep 3s
ExecStartPost=/sbin/ifconfig tap_soft 192.168.249.1/24
#ExecStartPost=/sbin/ip address add 192.168.249.1/24 dev tap_soft
ExecStop=/opt/vpnserver/vpnserver stop
#ExecReload=/bin/kill -HUP $MAINPID
#Restart=on-failure

[Install]
WantedBy=multi-user.target