From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: texteditor.si@gmail.com Received: from krantz.zx2c4.com (localhost [127.0.0.1]) by krantz.zx2c4.com (ZX2C4 Mail Server) with ESMTP id ffac6680 for ; Wed, 24 May 2017 22:52:21 +0000 (UTC) Received: from mail-oi0-f53.google.com (mail-oi0-f53.google.com [209.85.218.53]) by krantz.zx2c4.com (ZX2C4 Mail Server) with ESMTP id 8fe3c632 for ; Wed, 24 May 2017 22:52:21 +0000 (UTC) Received: by mail-oi0-f53.google.com with SMTP id l18so260869849oig.2 for ; Wed, 24 May 2017 16:04:40 -0700 (PDT) MIME-Version: 1.0 From: Text Editor Date: Wed, 24 May 2017 19:04:38 -0400 Message-ID: Subject: Can't seem to split tunnel using tables the way I can in OpenVPN To: wireguard@lists.zx2c4.com Content-Type: multipart/alternative; boundary="001a11407770f0921905504d20d3" List-Id: Development discussion of WireGuard List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , --001a11407770f0921905504d20d3 Content-Type: text/plain; charset="UTF-8" Trying to replicate my OpenVPN routing setup, tunnel is split to go to /24 subnet inside OpenVPN without the default traffic going through it. However, it is setup to use a gateway in OpenVPN to reach the internet when packets go through the interface Copying this setup over to Wireguard seems to break - I can ping the endpoints inside the Wireguard VPN, but trying to reach the internet via the internet seems to not work Configuration files on the Server side: https://pastebin.com/raw/TJvKazSL Configuration files on the Server side: https://pastebin.com/raw/2t760WvY This same concept works on OpenVPN without issue, not sure what is happening --001a11407770f0921905504d20d3 Content-Type: text/html; charset="UTF-8" Content-Transfer-Encoding: quoted-printable
Trying to replicate my OpenVPN routing= setup, tunnel is split to go to /24 subnet inside OpenVPN without the defa= ult traffic going through it.

However, it is setup to use a ga= teway in OpenVPN to reach the internet when packets go through the interfac= e


Copying this setup over to Wireguard seems to break - I = can ping the endpoints inside the Wireguard VPN, but trying to reach the in= ternet via the internet seems to not work



Configuratio= n files on the Server side:

https://pastebin.com/raw/TJvKazSL

Configuration files on t= he Server side:

https:= //pastebin.com/raw/2t760WvY


This same concept works on= OpenVPN without issue, not sure what is happening
--001a11407770f0921905504d20d3-- From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: lazyvirus@gmx.com Received: from krantz.zx2c4.com (localhost [127.0.0.1]) by krantz.zx2c4.com (ZX2C4 Mail Server) with ESMTP id b824ecd5 for ; Thu, 25 May 2017 17:01:17 +0000 (UTC) Received: from mout.gmx.net (mout.gmx.net [212.227.17.22]) by krantz.zx2c4.com (ZX2C4 Mail Server) with ESMTP id 416e7c25 for ; Thu, 25 May 2017 17:01:16 +0000 (UTC) Received: from msi.defcon1 ([93.15.31.113]) by mail.gmx.com (mrgmx102 [212.227.17.174]) with ESMTPSA (Nemesis) id 0Lf0M7-1djBQR0G23-00qhjg for ; Thu, 25 May 2017 19:13:40 +0200 Date: Thu, 25 May 2017 19:13:37 +0200 From: Bzzzz To: wireguard@lists.zx2c4.com Subject: Re: Can't seem to split tunnel using tables the way I can in OpenVPN Message-ID: <20170525191337.696cd9d5@msi.defcon1> In-Reply-To: References: MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 List-Id: Development discussion of WireGuard List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , On Wed, 24 May 2017 19:04:38 -0400 Text Editor wrote: > Trying to replicate my OpenVPN routing setup, tunnel is split to go > to /24 subnet inside OpenVPN without the default traffic going through > it. Hi Text Editor, =E2=80=A6 > I can ping the > endpoints inside the Wireguard VPN, So your WG VPN is acting good, giving you access your server from another place than your LAN, ie: through a phone tethering or from a friend's connection. Your setup seems overly complicated, as touching network I/F confs isn't a requirement, neither w/ OVPN or WG. ie: for the server, I took a copy of /etc/init.d/rmnologin (because it was the last one to be enabled into /etc/rc2.d and I want my VPN to be the last one to be activated), then I modified it, testing and using the presence of 'wg-quick' that is far more usable than modifying the network I/F confs or manually use 'wg' instead; on clients, scripts are manual, but also use 'wg-quick'. A quick run of chkconfig and the links are created in the right places, starting your VPN server at boot and allowing to start/stop it manually. I won't say it is the best way to do that, but it has the advantage not to scatter configurations in all the server corners. > but trying to reach the internet > via the internet seems to not work >=20 >=20 >=20 > Configuration files on the Server side: >=20 > https://pastebin.com/raw/TJvKazSL IIRC, using 0.0.0.0 means _all_ traffic is routed through the VPN; IMHO, your server setup should otherwise use something like: [Peer] =E2=80=A6 192.168.2.0/24 (/24 IF you intend to use WG to unite 2 LAN; for a roadwarrior, it might be better to restrict more stricly to it's IP, eg: 192.168.2.253/32) > Configuration files on the Server side: >=20 > https://pastebin.com/raw/2t760WvY >=20 >=20 > This same concept works on OpenVPN without issue, not sure what is > happening AFAIK, given you formerly authorize packets forward (either indefinitely into /etc/syctl.conf or temporarily by: echo 1 >/proc/sys/net/ipv4/ip_forward), the only iptables rules you need (into the server conf file) are: PostUp =3D iptables -t nat -I POSTROUTING -s /24 -o eth0 -j MASQUERADE PostDown =3D iptables -t nat -D POSTROUTING -s /24 -o eth0 -j MASQUERADE remember that any kind of testing on packets, ie: established, related, etc) can be a huge loss of time (it has to be computed for _each_ packet), hence, a loss of throughput in your VPN. And BTW, it is much more dangerous to reveal your keys on the Ternet than your endpoint IP address=E2=80=A6 Jean-Yves From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: me.kalin@gmail.com Received: from krantz.zx2c4.com (localhost [127.0.0.1]) by krantz.zx2c4.com (ZX2C4 Mail Server) with ESMTP id fe2b5ab6 for ; Thu, 25 May 2017 17:46:17 +0000 (UTC) Received: from mail-oi0-f52.google.com (mail-oi0-f52.google.com [209.85.218.52]) by krantz.zx2c4.com (ZX2C4 Mail Server) with ESMTP id c8317ad2 for ; Thu, 25 May 2017 17:46:17 +0000 (UTC) Received: by mail-oi0-f52.google.com with SMTP id l18so289513650oig.2 for ; Thu, 25 May 2017 10:58:42 -0700 (PDT) MIME-Version: 1.0 In-Reply-To: <20170525191337.696cd9d5@msi.defcon1> References: <20170525191337.696cd9d5@msi.defcon1> From: Kalin KOZHUHAROV Date: Thu, 25 May 2017 19:58:19 +0200 Message-ID: Subject: Re: Can't seem to split tunnel using tables the way I can in OpenVPN To: Bzzzz Content-Type: text/plain; charset="UTF-8" Cc: WireGuard mailing list List-Id: Development discussion of WireGuard List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , On Thu, May 25, 2017 at 7:13 PM, Bzzzz wrote: > And BTW, it is much more dangerous to reveal your keys on the Ternet > than your endpoint IP address=E2=80=A6 > That just made my day, LoL! I could not help posting it on twitter: https://twitter.com/thinrope/status/867801802724569088 Kalin. From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: lazyvirus@gmx.com Received: from krantz.zx2c4.com (localhost [127.0.0.1]) by krantz.zx2c4.com (ZX2C4 Mail Server) with ESMTP id 2177f349 for ; Thu, 25 May 2017 17:59:20 +0000 (UTC) Received: from mout.gmx.net (mout.gmx.net [212.227.15.19]) by krantz.zx2c4.com (ZX2C4 Mail Server) with ESMTP id 7f13f4dc for ; Thu, 25 May 2017 17:59:20 +0000 (UTC) Date: Thu, 25 May 2017 20:11:41 +0200 From: Bzzzz To: Kalin KOZHUHAROV Subject: Re: Can't seem to split tunnel using tables the way I can in OpenVPN Message-ID: <20170525201141.0d6a67ed@msi.defcon1> In-Reply-To: References: <20170525191337.696cd9d5@msi.defcon1> MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Cc: WireGuard mailing list List-Id: Development discussion of WireGuard List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , On Thu, 25 May 2017 19:58:19 +0200 Kalin KOZHUHAROV wrote: > On Thu, May 25, 2017 at 7:13 PM, Bzzzz wrote: > > And BTW, it is much more dangerous to reveal your keys on the Ternet > > than your endpoint IP address=E2=80=A6 > > >=20 > That just made my day, LoL! I could not help posting it on twitter: > https://twitter.com/thinrope/status/867801802724569088 >=20 > Kalin. I'm not sure about the way I should take it=E2=80=A6 When I wrote these lines, I was especially thinking to an old and now abandoned security project of mine that was a spider digging all possible information from mostly MLs: IP addresses, account names, e-mail addresses, keys of course, pet names, kids names, etc; running in parallel of another spider that used this information to "dig" the web, the results were "quite interesting"=E2=80=A6 Jean-Yves From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: me.kalin@gmail.com Received: from krantz.zx2c4.com (localhost [127.0.0.1]) by krantz.zx2c4.com (ZX2C4 Mail Server) with ESMTP id ceefee0a for ; Thu, 25 May 2017 19:02:22 +0000 (UTC) Received: from mail-oi0-f50.google.com (mail-oi0-f50.google.com [209.85.218.50]) by krantz.zx2c4.com (ZX2C4 Mail Server) with ESMTP id 718d5a65 for ; Thu, 25 May 2017 19:02:22 +0000 (UTC) Received: by mail-oi0-f50.google.com with SMTP id l18so292047317oig.2 for ; Thu, 25 May 2017 12:14:47 -0700 (PDT) MIME-Version: 1.0 In-Reply-To: <20170525201141.0d6a67ed@msi.defcon1> References: <20170525191337.696cd9d5@msi.defcon1> <20170525201141.0d6a67ed@msi.defcon1> From: Kalin KOZHUHAROV Date: Thu, 25 May 2017 21:14:26 +0200 Message-ID: Subject: Re: Can't seem to split tunnel using tables the way I can in OpenVPN To: Bzzzz Content-Type: text/plain; charset="UTF-8" Cc: WireGuard mailing list List-Id: Development discussion of WireGuard List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Hello Jean-Yves, I apologize for the misunderstanding, I completely agree with your advice! I guess the adding of "LoL" at the end didn't make that clearer, I just re-read my tweet. Thinking about it, I was re-editing it quite a few times to make it fit the length restriction and the end result was not clear, when taken out of context. "FAIL" for me, sorry. Kalin. From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: lazyvirus@gmx.com Received: from krantz.zx2c4.com (localhost [127.0.0.1]) by krantz.zx2c4.com (ZX2C4 Mail Server) with ESMTP id 655d72b5 for ; Thu, 25 May 2017 19:16:18 +0000 (UTC) Received: from mout.gmx.net (mout.gmx.net [212.227.17.21]) by krantz.zx2c4.com (ZX2C4 Mail Server) with ESMTP id e2a489b4 for ; Thu, 25 May 2017 19:16:18 +0000 (UTC) Date: Thu, 25 May 2017 21:28:39 +0200 From: Bzzzz To: Kalin KOZHUHAROV Subject: Re: Can't seem to split tunnel using tables the way I can in OpenVPN Message-ID: <20170525212839.2ec1cd51@msi.defcon1> In-Reply-To: References: <20170525191337.696cd9d5@msi.defcon1> <20170525201141.0d6a67ed@msi.defcon1> MIME-Version: 1.0 Content-Type: text/plain; charset=US-ASCII Cc: WireGuard mailing list List-Id: Development discussion of WireGuard List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , On Thu, 25 May 2017 21:14:26 +0200 Kalin KOZHUHAROV wrote: Whoops, back in the loop ! (strange behavior of this ML: when you answer to the ML, it answers only to the sender :/) > Hello Jean-Yves, > > I apologize for the misunderstanding, I completely agree with your > advice! There's no need to apologize: this is not sooo grave ;-) I just wasn't sure about the meaning as it could be interpreted any way. > I guess the adding of "LoL" at the end didn't make that clearer, I > just re-read my tweet. > Thinking about it, I was re-editing it quite a few times to make it > fit the length restriction and the end result was not clear, when > taken out of context. "FAIL" for me, sorry. For your penance, you'll recite 3 times the whole 1970 Unix code forward AND backward, then you'll copy the wg-quick man 10 times with a plume and in Gothic ! Jean-Yves From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: BATV+338a53c5bf9423e10bfc+5023+infradead.org+dwmw2@twosheds.srs.infradead.org Received: from krantz.zx2c4.com (localhost [127.0.0.1]) by krantz.zx2c4.com (ZX2C4 Mail Server) with ESMTP id 5c8023c5 for ; Thu, 25 May 2017 19:19:39 +0000 (UTC) Received: from twosheds.infradead.org (twosheds.infradead.org [90.155.92.209]) by krantz.zx2c4.com (ZX2C4 Mail Server) with ESMTP id 8c74fc5a for ; Thu, 25 May 2017 19:19:39 +0000 (UTC) Message-ID: <1495740721.5454.9.camel@infradead.org> Subject: Re: Can't seem to split tunnel using tables the way I can in OpenVPN From: David Woodhouse To: Bzzzz , Kalin KOZHUHAROV In-Reply-To: <20170525212839.2ec1cd51@msi.defcon1> References: <20170525191337.696cd9d5@msi.defcon1> <20170525201141.0d6a67ed@msi.defcon1> <20170525212839.2ec1cd51@msi.defcon1> Content-Type: multipart/signed; micalg="sha-256"; protocol="application/x-pkcs7-signature"; boundary="=-di6O8UYIFplwbLzVxZHo" Date: Thu, 25 May 2017 20:32:01 +0100 Mime-Version: 1.0 Cc: WireGuard mailing list List-Id: Development discussion of WireGuard List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , --=-di6O8UYIFplwbLzVxZHo Content-Type: text/plain; charset="UTF-8" Content-Transfer-Encoding: quoted-printable On Thu, 2017-05-25 at 21:28 +0200, Bzzzz wrote: >=20 > (strange behavior of this ML: when you answer to the ML, it answers only > to the sender :/) Why do you think that's strange? Your mail client will have two 'reply' buttons =E2=80=94 one for a private reply, and another for a public/group r= eply or "reply-all". If you ask it to send a private reply, you send a private reply. If you ask it to send a public reply, you send a public reply. What could be simpler? http://david.woodhou.se/reply-to-list.html --=-di6O8UYIFplwbLzVxZHo Content-Type: application/x-pkcs7-signature; name="smime.p7s" Content-Disposition: attachment; filename="smime.p7s" Content-Transfer-Encoding: base64 MIAGCSqGSIb3DQEHAqCAMIACAQExDzANBglghkgBZQMEAgEFADCABgkqhkiG9w0BBwEAAKCCDzUw ggSvMIIDl6ADAgECAhEA4CPLFRKDU4mtYW56VGdrITANBgkqhkiG9w0BAQsFADBvMQswCQYDVQQG EwJTRTEUMBIGA1UEChMLQWRkVHJ1c3QgQUIxJjAkBgNVBAsTHUFkZFRydXN0IEV4dGVybmFsIFRU UCBOZXR3b3JrMSIwIAYDVQQDExlBZGRUcnVzdCBFeHRlcm5hbCBDQSBSb290MB4XDTE0MTIyMjAw MDAwMFoXDTIwMDUzMDEwNDgzOFowgZsxCzAJBgNVBAYTAkdCMRswGQYDVQQIExJHcmVhdGVyIE1h bmNoZXN0ZXIxEDAOBgNVBAcTB1NhbGZvcmQxGjAYBgNVBAoTEUNPTU9ETyBDQSBMaW1pdGVkMUEw PwYDVQQDEzhDT01PRE8gU0hBLTI1NiBDbGllbnQgQXV0aGVudGljYXRpb24gYW5kIFNlY3VyZSBF bWFpbCBDQTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAImxDdp6UxlOcFIdvFamBia3 uEngludRq/HwWhNJFaO0jBtgvHpRQqd5jKQi3xdhTpHVdiMKFNNKAn+2HQmAbqUEPdm6uxb+oYep LkNSQxZ8rzJQyKZPWukI2M+TJZx7iOgwZOak+FaA/SokFDMXmaxE5WmLo0YGS8Iz1OlAnwawsayT QLm1CJM6nCpToxDbPSBhPFUDjtlOdiUCISn6o3xxdk/u4V+B6ftUgNvDezVSt4TeIj0sMC0xf1m9 UjewM2ktQ+v61qXxl3dnUYzZ7ifrvKUHOHaMpKk4/9+M9QOsSb7K93OZOg8yq5yVOhM9DkY6V3Rh UL7GQD/L5OKfoiECAwEAAaOCARcwggETMB8GA1UdIwQYMBaAFK29mHo0tCb3+sQmVO8DveAky1Qa MB0GA1UdDgQWBBSSYWuC4aKgqk/sZ/HCo/e0gADB7DAOBgNVHQ8BAf8EBAMCAYYwEgYDVR0TAQH/ BAgwBgEB/wIBADAdBgNVHSUEFjAUBggrBgEFBQcDAgYIKwYBBQUHAwQwEQYDVR0gBAowCDAGBgRV HSAAMEQGA1UdHwQ9MDswOaA3oDWGM2h0dHA6Ly9jcmwudXNlcnRydXN0LmNvbS9BZGRUcnVzdEV4 dGVybmFsQ0FSb290LmNybDA1BggrBgEFBQcBAQQpMCcwJQYIKwYBBQUHMAGGGWh0dHA6Ly9vY3Nw LnVzZXJ0cnVzdC5jb20wDQYJKoZIhvcNAQELBQADggEBABsqbqxVwTqriMXY7c1V86prYSvACRAj mQ/FZmpvsfW0tXdeDwJhAN99Bf4Ss6SAgAD8+x1banICCkG8BbrBWNUmwurVTYT7/oKYz1gb4yJj nFL4uwU2q31Ypd6rO2Pl2tVz7+zg+3vio//wQiOcyraNTT7kSxgDsqgt1Ni7QkuQaYUQ26Y3NOh7 4AEQpZzKOsefT4g0bopl0BqKu6ncyso20fT8wmQpNa/WsadxEdIDQ7GPPprsnjJT9HaSyoY0B7ks yuYcStiZDcGG4pCS+1pCaiMhEOllx/XVu37qjIUgAmLq0ToHLFnFmTPyOInltukWeh95FPZKEBom +nyK+5swggU9MIIEJaADAgECAhBqC1BYlVMtBFBN4igR/howMA0GCSqGSIb3DQEBCwUAMIGbMQsw CQYDVQQGEwJHQjEbMBkGA1UECBMSR3JlYXRlciBNYW5jaGVzdGVyMRAwDgYDVQQHEwdTYWxmb3Jk MRowGAYDVQQKExFDT01PRE8gQ0EgTGltaXRlZDFBMD8GA1UEAxM4Q09NT0RPIFNIQS0yNTYgQ2xp ZW50IEF1dGhlbnRpY2F0aW9uIGFuZCBTZWN1cmUgRW1haWwgQ0EwHhcNMTYxMjIwMDAwMDAwWhcN MTcxMjIwMjM1OTU5WjAkMSIwIAYJKoZIhvcNAQkBFhNkd213MkBpbmZyYWRlYWQub3JnMIIBIjAN BgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwbTrFaiGdvN2pThnR9q+4eaXB2wQZQNqhter5ZrJ pPO47e87bZ+f1tmYoh6+rB90G/XN24NErPRfvU4zVzNT9pCtCzSSVnBlZQBpaEYMKhcXo5PGKNsm An8BoGwNXjlxwbBNRaNO+ky0wNCaMNd1JLxEuvqg9J7rrcpHhWmnpXD5IKa8gv9GyVAJgOpiBOts p91sShc2kHvWJ5waPEWPCHDH9J+twGGKqKIIU7fdbURLUgUL1wlDSAHf/lgIAVCSj2H2HpoGqHpy HgOAClX9iRSLNa0Znj8HTaqfOwxXevsz1KkLFY+Ahm426GIEqdfkK2iT6Hhgc7tjNO3f8i5ALQID AQABo4IB8TCCAe0wHwYDVR0jBBgwFoAUkmFrguGioKpP7GfxwqP3tIAAwewwHQYDVR0OBBYEFILE dmHLtK6oxmFJZvBhTQhvqrS0MA4GA1UdDwEB/wQEAwIFoDAMBgNVHRMBAf8EAjAAMCAGA1UdJQQZ MBcGCCsGAQUFBwMEBgsrBgEEAbIxAQMFAjARBglghkgBhvhCAQEEBAMCBSAwRgYDVR0gBD8wPTA7 BgwrBgEEAbIxAQIBAQEwKzApBggrBgEFBQcCARYdaHR0cHM6Ly9zZWN1cmUuY29tb2RvLm5ldC9D UFMwXQYDVR0fBFYwVDBSoFCgToZMaHR0cDovL2NybC5jb21vZG9jYS5jb20vQ09NT0RPU0hBMjU2 Q2xpZW50QXV0aGVudGljYXRpb25hbmRTZWN1cmVFbWFpbENBLmNybDCBkAYIKwYBBQUHAQEEgYMw gYAwWAYIKwYBBQUHMAKGTGh0dHA6Ly9jcnQuY29tb2RvY2EuY29tL0NPTU9ET1NIQTI1NkNsaWVu dEF1dGhlbnRpY2F0aW9uYW5kU2VjdXJlRW1haWxDQS5jcnQwJAYIKwYBBQUHMAGGGGh0dHA6Ly9v Y3NwLmNvbW9kb2NhLmNvbTAeBgNVHREEFzAVgRNkd213MkBpbmZyYWRlYWQub3JnMA0GCSqGSIb3 DQEBCwUAA4IBAQA+AfvNhFwtapF5Lzjapgul3zYuEnMfR538Ya1vhP8wuOkcoJeT2gEFXzVO2WUu eWM0g0/DumnRB53htV/Qq/+vsL0i6a2+iOO7kHi5O7bZkgbdNv0t2lzonDUHi6LTa7NUj+tv+j6y hW+iNquC3ACP1dIZH8gJmicHblW63qRgp6wxhn315MLBeavi3uiSag2eeKFePiTIwJjN2UYq6kWg PL5G/Ycf9x/xN1XBTfJiURc0FsXhrA98VMWnt52C5Lo4txhGjzTI+IZg40b3YDs6E7mTYb5KKmbc QZA9priOFDdj1z5W9BdWhU6I/D0P9y8Z4Tr6+ZscMUVD0RqWy2LeMIIFPTCCBCWgAwIBAgIQagtQ WJVTLQRQTeIoEf4aMDANBgkqhkiG9w0BAQsFADCBmzELMAkGA1UEBhMCR0IxGzAZBgNVBAgTEkdy ZWF0ZXIgTWFuY2hlc3RlcjEQMA4GA1UEBxMHU2FsZm9yZDEaMBgGA1UEChMRQ09NT0RPIENBIExp bWl0ZWQxQTA/BgNVBAMTOENPTU9ETyBTSEEtMjU2IENsaWVudCBBdXRoZW50aWNhdGlvbiBhbmQg U2VjdXJlIEVtYWlsIENBMB4XDTE2MTIyMDAwMDAwMFoXDTE3MTIyMDIzNTk1OVowJDEiMCAGCSqG SIb3DQEJARYTZHdtdzJAaW5mcmFkZWFkLm9yZzCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoC ggEBAMG06xWohnbzdqU4Z0favuHmlwdsEGUDaobXq+WayaTzuO3vO22fn9bZmKIevqwfdBv1zduD RKz0X71OM1czU/aQrQs0klZwZWUAaWhGDCoXF6OTxijbJgJ/AaBsDV45ccGwTUWjTvpMtMDQmjDX dSS8RLr6oPSe663KR4Vpp6Vw+SCmvIL/RslQCYDqYgTrbKfdbEoXNpB71iecGjxFjwhwx/SfrcBh iqiiCFO33W1ES1IFC9cJQ0gB3/5YCAFQko9h9h6aBqh6ch4DgApV/YkUizWtGZ4/B02qnzsMV3r7 M9SpCxWPgIZuNuhiBKnX5Ctok+h4YHO7YzTt3/IuQC0CAwEAAaOCAfEwggHtMB8GA1UdIwQYMBaA FJJha4LhoqCqT+xn8cKj97SAAMHsMB0GA1UdDgQWBBSCxHZhy7SuqMZhSWbwYU0Ib6q0tDAOBgNV HQ8BAf8EBAMCBaAwDAYDVR0TAQH/BAIwADAgBgNVHSUEGTAXBggrBgEFBQcDBAYLKwYBBAGyMQED BQIwEQYJYIZIAYb4QgEBBAQDAgUgMEYGA1UdIAQ/MD0wOwYMKwYBBAGyMQECAQEBMCswKQYIKwYB BQUHAgEWHWh0dHBzOi8vc2VjdXJlLmNvbW9kby5uZXQvQ1BTMF0GA1UdHwRWMFQwUqBQoE6GTGh0 dHA6Ly9jcmwuY29tb2RvY2EuY29tL0NPTU9ET1NIQTI1NkNsaWVudEF1dGhlbnRpY2F0aW9uYW5k U2VjdXJlRW1haWxDQS5jcmwwgZAGCCsGAQUFBwEBBIGDMIGAMFgGCCsGAQUFBzAChkxodHRwOi8v Y3J0LmNvbW9kb2NhLmNvbS9DT01PRE9TSEEyNTZDbGllbnRBdXRoZW50aWNhdGlvbmFuZFNlY3Vy ZUVtYWlsQ0EuY3J0MCQGCCsGAQUFBzABhhhodHRwOi8vb2NzcC5jb21vZG9jYS5jb20wHgYDVR0R BBcwFYETZHdtdzJAaW5mcmFkZWFkLm9yZzANBgkqhkiG9w0BAQsFAAOCAQEAPgH7zYRcLWqReS84 2qYLpd82LhJzH0ed/GGtb4T/MLjpHKCXk9oBBV81TtllLnljNINPw7pp0Qed4bVf0Kv/r7C9Iumt vojju5B4uTu22ZIG3Tb9Ldpc6Jw1B4ui02uzVI/rb/o+soVvojargtwAj9XSGR/ICZonB25Vut6k YKesMYZ99eTCwXmr4t7okmoNnnihXj4kyMCYzdlGKupFoDy+Rv2HH/cf8TdVwU3yYlEXNBbF4awP fFTFp7edguS6OLcYRo80yPiGYONG92A7OhO5k2G+Sipm3EGQPaa4jhQ3Y9c+VvQXVoVOiPw9D/cv GeE6+vmbHDFFQ9Ealsti3jGCA9MwggPPAgEBMIGwMIGbMQswCQYDVQQGEwJHQjEbMBkGA1UECBMS R3JlYXRlciBNYW5jaGVzdGVyMRAwDgYDVQQHEwdTYWxmb3JkMRowGAYDVQQKExFDT01PRE8gQ0Eg TGltaXRlZDFBMD8GA1UEAxM4Q09NT0RPIFNIQS0yNTYgQ2xpZW50IEF1dGhlbnRpY2F0aW9uIGFu ZCBTZWN1cmUgRW1haWwgQ0ECEGoLUFiVUy0EUE3iKBH+GjAwDQYJYIZIAWUDBAIBBQCgggHzMBgG CSqGSIb3DQEJAzELBgkqhkiG9w0BBwEwHAYJKoZIhvcNAQkFMQ8XDTE3MDUyNTE5MzIwMVowLwYJ KoZIhvcNAQkEMSIEIIUjC8829A15sd4V9QTiWoSYBLjyZf5kAVrk6+dxamM8MIHBBgkrBgEEAYI3 EAQxgbMwgbAwgZsxCzAJBgNVBAYTAkdCMRswGQYDVQQIExJHcmVhdGVyIE1hbmNoZXN0ZXIxEDAO BgNVBAcTB1NhbGZvcmQxGjAYBgNVBAoTEUNPTU9ETyBDQSBMaW1pdGVkMUEwPwYDVQQDEzhDT01P RE8gU0hBLTI1NiBDbGllbnQgQXV0aGVudGljYXRpb24gYW5kIFNlY3VyZSBFbWFpbCBDQQIQagtQ WJVTLQRQTeIoEf4aMDCBwwYLKoZIhvcNAQkQAgsxgbOggbAwgZsxCzAJBgNVBAYTAkdCMRswGQYD VQQIExJHcmVhdGVyIE1hbmNoZXN0ZXIxEDAOBgNVBAcTB1NhbGZvcmQxGjAYBgNVBAoTEUNPTU9E TyBDQSBMaW1pdGVkMUEwPwYDVQQDEzhDT01PRE8gU0hBLTI1NiBDbGllbnQgQXV0aGVudGljYXRp b24gYW5kIFNlY3VyZSBFbWFpbCBDQQIQagtQWJVTLQRQTeIoEf4aMDANBgkqhkiG9w0BAQEFAASC AQAdcuXAPXjq1cjwx/45U7u1QN3ONRqgQmsBh6PdD8F6S/lxD9LfdP07z3Nbwl1GozebNTnfiM7b fxNLj5cYk3uujjGdK7SACde8aDSXbHbbHH4hyXRL9FlLAmx/xRSPBJlURJxjBeBSjWdKSZwLGodV Jh461EBhB7c9Kve3oO0/Q/+j1OUbRs7TnUMK45dPGWv/wsIlKD0Z/Ro9eVaE4inZ+NmRmjWJCWpj 6+P8vJN1w4fJtBoL11KuU52Y+uh6Vge+oEnexFq0EAeHQby6c95LQlNwN2Lx1BgaLS0GjfEbWPvo tUXnA0D9S850fjulKst0uwnZPKS0ahfyVyy+wBIWAAAAAAAA --=-di6O8UYIFplwbLzVxZHo-- From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: lazyvirus@gmx.com Received: from krantz.zx2c4.com (localhost [127.0.0.1]) by krantz.zx2c4.com (ZX2C4 Mail Server) with ESMTP id 8766ee0d for ; Thu, 25 May 2017 19:33:30 +0000 (UTC) Received: from mout.gmx.net (mout.gmx.net [212.227.15.19]) by krantz.zx2c4.com (ZX2C4 Mail Server) with ESMTP id ac605577 for ; Thu, 25 May 2017 19:33:30 +0000 (UTC) Date: Thu, 25 May 2017 21:45:51 +0200 From: Bzzzz To: David Woodhouse Subject: Re: Can't seem to split tunnel using tables the way I can in OpenVPN Message-ID: <20170525214551.4b602d80@msi.defcon1> In-Reply-To: <1495740721.5454.9.camel@infradead.org> References: <20170525191337.696cd9d5@msi.defcon1> <20170525201141.0d6a67ed@msi.defcon1> <20170525212839.2ec1cd51@msi.defcon1> <1495740721.5454.9.camel@infradead.org> MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Cc: WireGuard mailing list List-Id: Development discussion of WireGuard List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , On Thu, 25 May 2017 20:32:01 +0100 David Woodhouse wrote: > Why do you think that's strange? Your mail client will have two 'reply' > buttons =E2=80=94 one for a private reply, and another for a public/group= reply > or "reply-all". I use claws-mail, it has 3 answers possibilities: all/sender/ML, the strange thing is: if I hit 'all', it answer=E2=80=A6 all (quite normal until here), but if I hit 'ML', it only answers to your e-mail address ! What is weird is the ML seems to be put in CC when it should stay the main receiver. I'm using Debian stable+backports, claws-mail is from backports, may be it has a bug, however answering every other ML has the right behavior. JY From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: BATV+338a53c5bf9423e10bfc+5023+infradead.org+dwmw2@twosheds.srs.infradead.org Received: from krantz.zx2c4.com (localhost [127.0.0.1]) by krantz.zx2c4.com (ZX2C4 Mail Server) with ESMTP id 7d6bf2a9 for ; Thu, 25 May 2017 19:37:51 +0000 (UTC) Received: from twosheds.infradead.org (twosheds.infradead.org [90.155.92.209]) by krantz.zx2c4.com (ZX2C4 Mail Server) with ESMTP id beff9c0c for ; Thu, 25 May 2017 19:37:51 +0000 (UTC) Message-ID: <1495741814.5454.22.camel@infradead.org> Subject: Re: Can't seem to split tunnel using tables the way I can in OpenVPN From: David Woodhouse To: Bzzzz In-Reply-To: <20170525214551.4b602d80@msi.defcon1> References: <20170525191337.696cd9d5@msi.defcon1> <20170525201141.0d6a67ed@msi.defcon1> <20170525212839.2ec1cd51@msi.defcon1> <1495740721.5454.9.camel@infradead.org> <20170525214551.4b602d80@msi.defcon1> Content-Type: multipart/signed; micalg="sha-256"; protocol="application/x-pkcs7-signature"; boundary="=-kFIur6quMBv53GhZXHhE" Date: Thu, 25 May 2017 20:50:14 +0100 Mime-Version: 1.0 Cc: WireGuard mailing list List-Id: Development discussion of WireGuard List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , --=-kFIur6quMBv53GhZXHhE Content-Type: text/plain; charset="UTF-8" Content-Transfer-Encoding: quoted-printable On Thu, 2017-05-25 at 21:45 +0200, Bzzzz wrote: > On Thu, 25 May 2017 20:32:01 +0100 > David Woodhouse wrote: >=20 > > Why do you think that's strange? Your mail client will have two > 'reply' > > buttons =E2=80=94 one for a private reply, and another for a public/gro= up > reply > > or "reply-all". >=20 > I use claws-mail, it has 3 answers possibilities: all/sender/ML, > the strange thing is: > if I hit 'all', it answer=E2=80=A6 all (quite normal until here), > but if I hit 'ML', it only answers to your e-mail address ! >=20 > What is weird is the ML seems to be put in CC when it should stay the > main receiver. >=20 > I'm using Debian stable+backports, claws-mail is from backports, may > be it has a bug, however answering every other ML has the right > behavior. The list doesn't have the RFC2369 List-Post: header which would allow the 'Reply to List' option to work. But that's OK because I just explained to you why it's anti-social and shouldn't be used anyway. --=-kFIur6quMBv53GhZXHhE Content-Type: application/x-pkcs7-signature; name="smime.p7s" Content-Disposition: attachment; filename="smime.p7s" Content-Transfer-Encoding: base64 MIAGCSqGSIb3DQEHAqCAMIACAQExDzANBglghkgBZQMEAgEFADCABgkqhkiG9w0BBwEAAKCCDzUw ggSvMIIDl6ADAgECAhEA4CPLFRKDU4mtYW56VGdrITANBgkqhkiG9w0BAQsFADBvMQswCQYDVQQG EwJTRTEUMBIGA1UEChMLQWRkVHJ1c3QgQUIxJjAkBgNVBAsTHUFkZFRydXN0IEV4dGVybmFsIFRU UCBOZXR3b3JrMSIwIAYDVQQDExlBZGRUcnVzdCBFeHRlcm5hbCBDQSBSb290MB4XDTE0MTIyMjAw MDAwMFoXDTIwMDUzMDEwNDgzOFowgZsxCzAJBgNVBAYTAkdCMRswGQYDVQQIExJHcmVhdGVyIE1h bmNoZXN0ZXIxEDAOBgNVBAcTB1NhbGZvcmQxGjAYBgNVBAoTEUNPTU9ETyBDQSBMaW1pdGVkMUEw PwYDVQQDEzhDT01PRE8gU0hBLTI1NiBDbGllbnQgQXV0aGVudGljYXRpb24gYW5kIFNlY3VyZSBF bWFpbCBDQTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAImxDdp6UxlOcFIdvFamBia3 uEngludRq/HwWhNJFaO0jBtgvHpRQqd5jKQi3xdhTpHVdiMKFNNKAn+2HQmAbqUEPdm6uxb+oYep LkNSQxZ8rzJQyKZPWukI2M+TJZx7iOgwZOak+FaA/SokFDMXmaxE5WmLo0YGS8Iz1OlAnwawsayT QLm1CJM6nCpToxDbPSBhPFUDjtlOdiUCISn6o3xxdk/u4V+B6ftUgNvDezVSt4TeIj0sMC0xf1m9 UjewM2ktQ+v61qXxl3dnUYzZ7ifrvKUHOHaMpKk4/9+M9QOsSb7K93OZOg8yq5yVOhM9DkY6V3Rh UL7GQD/L5OKfoiECAwEAAaOCARcwggETMB8GA1UdIwQYMBaAFK29mHo0tCb3+sQmVO8DveAky1Qa MB0GA1UdDgQWBBSSYWuC4aKgqk/sZ/HCo/e0gADB7DAOBgNVHQ8BAf8EBAMCAYYwEgYDVR0TAQH/ BAgwBgEB/wIBADAdBgNVHSUEFjAUBggrBgEFBQcDAgYIKwYBBQUHAwQwEQYDVR0gBAowCDAGBgRV HSAAMEQGA1UdHwQ9MDswOaA3oDWGM2h0dHA6Ly9jcmwudXNlcnRydXN0LmNvbS9BZGRUcnVzdEV4 dGVybmFsQ0FSb290LmNybDA1BggrBgEFBQcBAQQpMCcwJQYIKwYBBQUHMAGGGWh0dHA6Ly9vY3Nw LnVzZXJ0cnVzdC5jb20wDQYJKoZIhvcNAQELBQADggEBABsqbqxVwTqriMXY7c1V86prYSvACRAj mQ/FZmpvsfW0tXdeDwJhAN99Bf4Ss6SAgAD8+x1banICCkG8BbrBWNUmwurVTYT7/oKYz1gb4yJj nFL4uwU2q31Ypd6rO2Pl2tVz7+zg+3vio//wQiOcyraNTT7kSxgDsqgt1Ni7QkuQaYUQ26Y3NOh7 4AEQpZzKOsefT4g0bopl0BqKu6ncyso20fT8wmQpNa/WsadxEdIDQ7GPPprsnjJT9HaSyoY0B7ks yuYcStiZDcGG4pCS+1pCaiMhEOllx/XVu37qjIUgAmLq0ToHLFnFmTPyOInltukWeh95FPZKEBom +nyK+5swggU9MIIEJaADAgECAhBqC1BYlVMtBFBN4igR/howMA0GCSqGSIb3DQEBCwUAMIGbMQsw CQYDVQQGEwJHQjEbMBkGA1UECBMSR3JlYXRlciBNYW5jaGVzdGVyMRAwDgYDVQQHEwdTYWxmb3Jk MRowGAYDVQQKExFDT01PRE8gQ0EgTGltaXRlZDFBMD8GA1UEAxM4Q09NT0RPIFNIQS0yNTYgQ2xp ZW50IEF1dGhlbnRpY2F0aW9uIGFuZCBTZWN1cmUgRW1haWwgQ0EwHhcNMTYxMjIwMDAwMDAwWhcN MTcxMjIwMjM1OTU5WjAkMSIwIAYJKoZIhvcNAQkBFhNkd213MkBpbmZyYWRlYWQub3JnMIIBIjAN BgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwbTrFaiGdvN2pThnR9q+4eaXB2wQZQNqhter5ZrJ pPO47e87bZ+f1tmYoh6+rB90G/XN24NErPRfvU4zVzNT9pCtCzSSVnBlZQBpaEYMKhcXo5PGKNsm An8BoGwNXjlxwbBNRaNO+ky0wNCaMNd1JLxEuvqg9J7rrcpHhWmnpXD5IKa8gv9GyVAJgOpiBOts p91sShc2kHvWJ5waPEWPCHDH9J+twGGKqKIIU7fdbURLUgUL1wlDSAHf/lgIAVCSj2H2HpoGqHpy HgOAClX9iRSLNa0Znj8HTaqfOwxXevsz1KkLFY+Ahm426GIEqdfkK2iT6Hhgc7tjNO3f8i5ALQID AQABo4IB8TCCAe0wHwYDVR0jBBgwFoAUkmFrguGioKpP7GfxwqP3tIAAwewwHQYDVR0OBBYEFILE dmHLtK6oxmFJZvBhTQhvqrS0MA4GA1UdDwEB/wQEAwIFoDAMBgNVHRMBAf8EAjAAMCAGA1UdJQQZ MBcGCCsGAQUFBwMEBgsrBgEEAbIxAQMFAjARBglghkgBhvhCAQEEBAMCBSAwRgYDVR0gBD8wPTA7 BgwrBgEEAbIxAQIBAQEwKzApBggrBgEFBQcCARYdaHR0cHM6Ly9zZWN1cmUuY29tb2RvLm5ldC9D UFMwXQYDVR0fBFYwVDBSoFCgToZMaHR0cDovL2NybC5jb21vZG9jYS5jb20vQ09NT0RPU0hBMjU2 Q2xpZW50QXV0aGVudGljYXRpb25hbmRTZWN1cmVFbWFpbENBLmNybDCBkAYIKwYBBQUHAQEEgYMw gYAwWAYIKwYBBQUHMAKGTGh0dHA6Ly9jcnQuY29tb2RvY2EuY29tL0NPTU9ET1NIQTI1NkNsaWVu dEF1dGhlbnRpY2F0aW9uYW5kU2VjdXJlRW1haWxDQS5jcnQwJAYIKwYBBQUHMAGGGGh0dHA6Ly9v Y3NwLmNvbW9kb2NhLmNvbTAeBgNVHREEFzAVgRNkd213MkBpbmZyYWRlYWQub3JnMA0GCSqGSIb3 DQEBCwUAA4IBAQA+AfvNhFwtapF5Lzjapgul3zYuEnMfR538Ya1vhP8wuOkcoJeT2gEFXzVO2WUu eWM0g0/DumnRB53htV/Qq/+vsL0i6a2+iOO7kHi5O7bZkgbdNv0t2lzonDUHi6LTa7NUj+tv+j6y hW+iNquC3ACP1dIZH8gJmicHblW63qRgp6wxhn315MLBeavi3uiSag2eeKFePiTIwJjN2UYq6kWg PL5G/Ycf9x/xN1XBTfJiURc0FsXhrA98VMWnt52C5Lo4txhGjzTI+IZg40b3YDs6E7mTYb5KKmbc QZA9priOFDdj1z5W9BdWhU6I/D0P9y8Z4Tr6+ZscMUVD0RqWy2LeMIIFPTCCBCWgAwIBAgIQagtQ WJVTLQRQTeIoEf4aMDANBgkqhkiG9w0BAQsFADCBmzELMAkGA1UEBhMCR0IxGzAZBgNVBAgTEkdy ZWF0ZXIgTWFuY2hlc3RlcjEQMA4GA1UEBxMHU2FsZm9yZDEaMBgGA1UEChMRQ09NT0RPIENBIExp bWl0ZWQxQTA/BgNVBAMTOENPTU9ETyBTSEEtMjU2IENsaWVudCBBdXRoZW50aWNhdGlvbiBhbmQg U2VjdXJlIEVtYWlsIENBMB4XDTE2MTIyMDAwMDAwMFoXDTE3MTIyMDIzNTk1OVowJDEiMCAGCSqG SIb3DQEJARYTZHdtdzJAaW5mcmFkZWFkLm9yZzCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoC ggEBAMG06xWohnbzdqU4Z0favuHmlwdsEGUDaobXq+WayaTzuO3vO22fn9bZmKIevqwfdBv1zduD RKz0X71OM1czU/aQrQs0klZwZWUAaWhGDCoXF6OTxijbJgJ/AaBsDV45ccGwTUWjTvpMtMDQmjDX dSS8RLr6oPSe663KR4Vpp6Vw+SCmvIL/RslQCYDqYgTrbKfdbEoXNpB71iecGjxFjwhwx/SfrcBh iqiiCFO33W1ES1IFC9cJQ0gB3/5YCAFQko9h9h6aBqh6ch4DgApV/YkUizWtGZ4/B02qnzsMV3r7 M9SpCxWPgIZuNuhiBKnX5Ctok+h4YHO7YzTt3/IuQC0CAwEAAaOCAfEwggHtMB8GA1UdIwQYMBaA FJJha4LhoqCqT+xn8cKj97SAAMHsMB0GA1UdDgQWBBSCxHZhy7SuqMZhSWbwYU0Ib6q0tDAOBgNV HQ8BAf8EBAMCBaAwDAYDVR0TAQH/BAIwADAgBgNVHSUEGTAXBggrBgEFBQcDBAYLKwYBBAGyMQED BQIwEQYJYIZIAYb4QgEBBAQDAgUgMEYGA1UdIAQ/MD0wOwYMKwYBBAGyMQECAQEBMCswKQYIKwYB BQUHAgEWHWh0dHBzOi8vc2VjdXJlLmNvbW9kby5uZXQvQ1BTMF0GA1UdHwRWMFQwUqBQoE6GTGh0 dHA6Ly9jcmwuY29tb2RvY2EuY29tL0NPTU9ET1NIQTI1NkNsaWVudEF1dGhlbnRpY2F0aW9uYW5k U2VjdXJlRW1haWxDQS5jcmwwgZAGCCsGAQUFBwEBBIGDMIGAMFgGCCsGAQUFBzAChkxodHRwOi8v Y3J0LmNvbW9kb2NhLmNvbS9DT01PRE9TSEEyNTZDbGllbnRBdXRoZW50aWNhdGlvbmFuZFNlY3Vy ZUVtYWlsQ0EuY3J0MCQGCCsGAQUFBzABhhhodHRwOi8vb2NzcC5jb21vZG9jYS5jb20wHgYDVR0R BBcwFYETZHdtdzJAaW5mcmFkZWFkLm9yZzANBgkqhkiG9w0BAQsFAAOCAQEAPgH7zYRcLWqReS84 2qYLpd82LhJzH0ed/GGtb4T/MLjpHKCXk9oBBV81TtllLnljNINPw7pp0Qed4bVf0Kv/r7C9Iumt vojju5B4uTu22ZIG3Tb9Ldpc6Jw1B4ui02uzVI/rb/o+soVvojargtwAj9XSGR/ICZonB25Vut6k YKesMYZ99eTCwXmr4t7okmoNnnihXj4kyMCYzdlGKupFoDy+Rv2HH/cf8TdVwU3yYlEXNBbF4awP fFTFp7edguS6OLcYRo80yPiGYONG92A7OhO5k2G+Sipm3EGQPaa4jhQ3Y9c+VvQXVoVOiPw9D/cv GeE6+vmbHDFFQ9Ealsti3jGCA9MwggPPAgEBMIGwMIGbMQswCQYDVQQGEwJHQjEbMBkGA1UECBMS R3JlYXRlciBNYW5jaGVzdGVyMRAwDgYDVQQHEwdTYWxmb3JkMRowGAYDVQQKExFDT01PRE8gQ0Eg TGltaXRlZDFBMD8GA1UEAxM4Q09NT0RPIFNIQS0yNTYgQ2xpZW50IEF1dGhlbnRpY2F0aW9uIGFu ZCBTZWN1cmUgRW1haWwgQ0ECEGoLUFiVUy0EUE3iKBH+GjAwDQYJYIZIAWUDBAIBBQCgggHzMBgG CSqGSIb3DQEJAzELBgkqhkiG9w0BBwEwHAYJKoZIhvcNAQkFMQ8XDTE3MDUyNTE5NTAxNFowLwYJ KoZIhvcNAQkEMSIEINX7EDikWO0s+59tdwdB5UbPsB1nn/aTm/vQJnOlpxvnMIHBBgkrBgEEAYI3 EAQxgbMwgbAwgZsxCzAJBgNVBAYTAkdCMRswGQYDVQQIExJHcmVhdGVyIE1hbmNoZXN0ZXIxEDAO BgNVBAcTB1NhbGZvcmQxGjAYBgNVBAoTEUNPTU9ETyBDQSBMaW1pdGVkMUEwPwYDVQQDEzhDT01P RE8gU0hBLTI1NiBDbGllbnQgQXV0aGVudGljYXRpb24gYW5kIFNlY3VyZSBFbWFpbCBDQQIQagtQ WJVTLQRQTeIoEf4aMDCBwwYLKoZIhvcNAQkQAgsxgbOggbAwgZsxCzAJBgNVBAYTAkdCMRswGQYD VQQIExJHcmVhdGVyIE1hbmNoZXN0ZXIxEDAOBgNVBAcTB1NhbGZvcmQxGjAYBgNVBAoTEUNPTU9E TyBDQSBMaW1pdGVkMUEwPwYDVQQDEzhDT01PRE8gU0hBLTI1NiBDbGllbnQgQXV0aGVudGljYXRp b24gYW5kIFNlY3VyZSBFbWFpbCBDQQIQagtQWJVTLQRQTeIoEf4aMDANBgkqhkiG9w0BAQEFAASC AQBSKRzkFGEOC1VO7U592Fu5Sm+KElKtVU3ggGQBmBsDI5UULPU/gdDqlYTZ4ezZV54xE2R6+OE+ sZlUX93yvdf9F9AL/PVgW/Bp2iQ5hM72DrJBT6h8HZyc5khJHy19n9iYsMl3rjT+TxIvrocVr+G2 S0ld7F1bTdCyYH1kIPapi6d9hb9DRgz7JAYNUok7tG1xxgM2xItbDQTdXpG95NOdcHO+N1UkupgU NhbBVhzJNYuhAaoMm1VV557aF34H0okiBN6DgfXXYsphtP+1tAOjQhLTo5SYbDERtAnVIufi2G3O 7zRpoze6t/3H+QPYdHpPZUXe4vWSVV+peyf8i8Q6AAAAAAAA --=-kFIur6quMBv53GhZXHhE-- From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: lazyvirus@gmx.com Received: from krantz.zx2c4.com (localhost [127.0.0.1]) by krantz.zx2c4.com (ZX2C4 Mail Server) with ESMTP id ba54bbd2 for ; Thu, 25 May 2017 19:50:48 +0000 (UTC) Received: from mout.gmx.net (mout.gmx.net [212.227.17.22]) by krantz.zx2c4.com (ZX2C4 Mail Server) with ESMTP id 29919c76 for ; Thu, 25 May 2017 19:50:47 +0000 (UTC) Date: Thu, 25 May 2017 22:03:08 +0200 From: Bzzzz To: David Woodhouse Subject: Re: Can't seem to split tunnel using tables the way I can in OpenVPN Message-ID: <20170525220308.2952f2a0@msi.defcon1> In-Reply-To: <1495741814.5454.22.camel@infradead.org> References: <20170525191337.696cd9d5@msi.defcon1> <20170525201141.0d6a67ed@msi.defcon1> <20170525212839.2ec1cd51@msi.defcon1> <1495740721.5454.9.camel@infradead.org> <20170525214551.4b602d80@msi.defcon1> <1495741814.5454.22.camel@infradead.org> MIME-Version: 1.0 Content-Type: text/plain; charset=US-ASCII Cc: WireGuard mailing list List-Id: Development discussion of WireGuard List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , On Thu, 25 May 2017 20:50:14 +0100 David Woodhouse wrote: > The list doesn't have the RFC2369 List-Post: header which would allow > the 'Reply to List' option to work. > > But that's OK because I just explained to you why it's anti-social and > shouldn't be used anyway. If I had time to lose, this could for sure leads to a looong (and, almost as surely, sterile) discussion, as it concerns only your own opinion and you're twisting arguments to reflect only it. I've no spare time to toy, so have a nice day/night and bye. JY