[LARTC] Packet rewriting

Linux Advanced Routing and Traffic Control

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Hello

Now here's a problem I've never thought of before.

We have been given a net from UUNET. The first IP-address (.161) is used
by their router (which we have no access to fiddle with). I have
installed a firewall at .162 which will serve both as firewall and
trafic controller. My question is how to I make the public IP-addresses
accessible from the outside and still be located behind the firewall?
Like this

[Internet]--[UU-Router.161]--[Firewall.162]
I want to be able to put a machine behind the firewall on a public
IP-adress (.163) but still protected by the firewall. I was told that
this could be done in other firewalls by aliasing the NIC on the outside
to all public ip-addresses and then have the firewall forward these
packets to a computer on the inside. Like portforwarding but a whole
machine (all ports) on all protocols (under IP ofcause) (not blocked by
the firewall).

Is this possible with ipchains and some fancy packetrewriting?

Anyone have any tips?
-- 
Admera Solution Provider AB
Tel: 0733-850 814
Position: 55°36´13N  13°03´36E
begin:vcard 
n:Rambris;Fredrik
tel;work:0733-850814
x-mozilla-html:FALSE
org:Admera Solution Provider AB;Teknik
adr:;;Höjdroderg. 5;Malmö;;212 39;Sweden
version:2.1
email;internet:fredrik.rambris@xxxxxxxxx
note:Position: 55°36´13N  13°03´36E
x-mozilla-cpt:;-27936
fn:Fredrik Rambris
end:vcard

[Index of Archives]     [LARTC Home Page]     [Netfilter]     [Netfilter Development]     [Network Development]     [Bugtraq]     [GCC Help]     [Yosemite News]     [Linux Kernel]     [Fedora Users]
  Powered by Linux