How to redirect traffic from the whonix (virbr1) gateway to another KVM virtual machine (virbr3)? That the external network was not from the host. I want to separate openvpn + stunnel from host and gateway. By running them in another virtual machine.
Default:
workstation > gateway > host system > internet
I need so:
workstation > gateway > virtual machine(OpenVpn+stunnel) > host system > internet
Not really supported. You can try creating a second “internal” nework and connect GW egress to it and hope your stunnel/openvpn VM is configured to correctly redirect the traffic, but it seems pointless to me when GW supports running OpenVPN at the moment. This may change when we move to nftables.
The problem is that on the host, I quietly start my openvpn + stunnel configuration, but it doesn’t work out inside the whonix gateway, for various reasons. To begin with, WIKI with the RISEVPN example is only confusing.
Where am I mistaken?
Following the instructions - my actions are as follows:
Everything starts, but there is no connection via VPN - Tor off. Should TUN0 interface go up? IFCONFIG is silent about this.
Perhaps this is the problem?
Loaded: loaded (/lib/systemd/system/openvpn-client@.service; disabled - off?
On a host used such a config - OPENVPN
Works great.
client
dev tun
proto tcp
remote 127.0.0.1 1194
resolv-retry infinite
nobind
user nobody
group nobody
persist-key
persist-tun
ca ca.crt
cert openvpn-client.crt
key openvpn-client.key
tls-auth ta.key 1
remote-cert-tls server
cipher AES-256-GCM
verb 3