Re: Iptables proxy to a different network

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On Fri, 9 Feb 2007, Pascal Hambourg wrote:

Jan Engelhardt a écrit :

I may be wrong, but doing IP NAT on a bridge seems to me quite unnatural and
troublesome.

A bridge is like a 'direct connection' so you cannot use NAT.

My idea of a bridge is a kind of software switch.
Then why did you mention "setting up your proxy box as bridge" ?




My understanding of a bridge, is that it is a transparent connector of two distinct broadcast domains. At least in their earlier and older first implementations.


Perhaps I'm showing my age?!...


Thanks,


Ron DuFresne
- -- ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
        admin & senior security consultant:  sysinfo.com
                        http://sysinfo.com
Key fingerprint = 9401 4B13 B918 164C 647A  E838 B2DF AFCC 94B0 6629

...We waste time looking for the perfect lover
instead of creating the perfect love.

                -Tom Robbins <Still Life With Woodpecker>
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.5 (GNU/Linux)

iD8DBQFF0iNMst+vzJSwZikRArxJAKCMgPfeSo2PM2P0USICMHA4w+I8kQCeOJ9V
iYBgKm6pJHhmI6fOxT7QpKQ=
=pj67
-----END PGP SIGNATURE-----

[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux