J'ai trouvé ceci sur le forum du pirat partiet suédois. Ca concerne le vpn de relakks, mais a l'air d'être applicable à tout VPN. La solution consiste à utiliser un parefeu comme, non pas Open Office, mais Commodo v3, qui permet d'introduire des règles interdisant le passage du traffic d'une application donnée en cas de déconnexion du VPN:
Citation
1. Go to http://personalfirew...d_firewall.html and download and install Comodo Personal Firewall version 3.
(You only need the firewall part, the new Anti-Virus and Proactive-Security stuff included in the package is not necessary.)
2. In the Firewall’s “Common Tasks” section open “My Network Zones”, add a new network zone, call it “Relakks” and define it as “a range of IP addresses” where you put in the address range of Relakks (93.182.128.0 - 93.182.191.255).
(My Network Zones => Add => A New Network Zone => Name: Relakks; Add => A New Address => A range of IP addresses: 93.182.128.0 - 93.182.191.255)
3. Then choose the specific application you want to force to exclusively use Relakks in the Firewall's “Network Security Policy’s” “Application Rules” tab, remove all old rules which are assigned to this application and add three new rules:
First right-click and add this rule:
Allow; IP; In; Source: Any; Destination: Zone: “Relakks”; Protocol: Any;
Second add this rule below the first one:
Allow; IP; Out; Source: Zone: “Relakks”; Destination: Any; Protocol: Any;
Third add this rule below the second one:
Block; IP; In/Out; Source: Any; Destination: Any; Protocol: Any;
Note: The order in which the rules are placed upon another is important!
So, there should now be three rules (and only these three) listed below your application:
Application name (for example “Firefox”)
Top: Allow IP In From IP Any To In [Relakks] Where Protocol Is Any
Middle: Allow IP Out From In [Relakks] To IP Any Where Protocol Is Any
Bottom: Block IP In/Out From IP Any To IP Any Where Protocol Is Any
Note: The "Allow IP In/Out ... Where Protocol Is Any" settings will allow your application to establish any kind of connection.
You can limit those rules to specific ports/protocols in case you want to tighten up you security additionally.
If you got connection problems, make sure you haven't configured any global rule that's blocking your connections.
Edited: 2009-Apr-18 21:15:51 by NoName111
http://forum.piratpa...91410-78-1.aspx
Citation
rajout d'un sous titre "car sinon la VRAIE adresse IP est révélée !"
merci !
Ce message a été modifié par kraftonZ - 15/02/2010 - 09:30.










Multi-citation






