Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Note

For the ping to work, make sure your instance's Security Group allows ICMP traffic


Security Groups and the VPN Service

You may need to alter your security groups to allow traffic from the VPN server to reach your instance. You will see Calgary VPN traffic reaching your instance locally from 10.1.8.18, while Edmonton VPN traffic will reach your instance from 10.2.1.9


Example rules:

Allow all ICMP/ping traffic from the local private network

Calgary: Allow ALL ICMP from 10.1.0.0/20
Edmonton: Allow ALL ICMP from 10.2.0.0/20

Allow port 22 (SSH) from only the VPN exit point:

Calgary: Allow TCP Port 22 from 10.1.8.18/32
Edmonton: Allow TCP Port 22 from 10.2.1.9/32