Re: 2-NIC DMZ?

Linux Advanced Routing and Traffic Control

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Hi

AFAIK, you can do all of this by using FIAIF:

http://fiaif.fugmann.dhs.org/

which is a VERY nice and highly customizable script for setting up an
iptables based firewall. It has traffic shaping too.

Regards
Lars Munch

On Mon, Oct 28, 2002 at 11:27:37AM -0500, Justin Richer wrote:
> Hi all,
> 
> I have two static IPs from my ISP. I would like one of these IPs to be
> directed to my desktop box all the time, and the other to be directed to a
> DHCP-served NAT network. I've nearly gotten it working using iptables and
> iproute2, but one problem is that i would like packets coming from my
> desktop box via the firewall to be printed with my desktop's external IP.
> They are currently being seen as from the NAT-hosted IP, which is the main
> IP address of the firewall box's external NIC. My setup looks like this:
> 
>  DSL Bridge -> [eth0] Firewall [eth1] -> 8-port-switch -> static desktop
>                                                         \-> (NAT cloud)
> 
> is it possible to send packets from the firewall looking like they came from
> a different external IP address based on which internal IP they were routed
> from? it seems to me it really should be possible to do ... just, how?
> 
> Thanks,
>   -- Justin
> 
> _______________________________________________
> LARTC mailing list / LARTC@mailman.ds9a.nl
> http://mailman.ds9a.nl/mailman/listinfo/lartc HOWTO: http://lartc.org/
_______________________________________________
LARTC mailing list / LARTC@mailman.ds9a.nl
http://mailman.ds9a.nl/mailman/listinfo/lartc HOWTO: http://lartc.org/

[Index of Archives]     [LARTC Home Page]     [Netfilter]     [Netfilter Development]     [Network Development]     [Bugtraq]     [GCC Help]     [Yosemite News]     [Linux Kernel]     [Fedora Users]
  Powered by Linux