Re: having more then 1 external interfaces ?

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Faisal wrote:
is it possible in iptables to have more then 1 external interfaces ?

Short answer. Yes.

Longer answer. Netfilter do not have notition of external or internal interface. They are all the same. You build firewall rules according to which interfaces you consider as internal, external, and what kind of traffic are you going to allow on them. If you want, you might be just as restrictive on internal interfaces as on external.

If you are using some software that generates firewall rules for you, than that software might have limitation of allowing you to tag only one interface as external. Again, this is not limitation imposed by Netfilter. For Netfilter, there's no such thing as internal or external interface. Netfilter knows only about "interfaces", it doesn't know what you consider them to be.

--
Aleksandar Milivojevic <amilivojevic@xxxxxx>    Pollard Banknote Limited
Systems Administrator                           1499 Buffalo Place
Tel: (204) 474-2323 ext 276                     Winnipeg, MB  R3T 1L7


[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux