LinuxQuestions.org
Share your knowledge at the LQ Wiki.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices


Reply
  Search this Thread
Old 10-17-2012, 12:09 PM   #1
maco21
LQ Newbie
 
Registered: Oct 2012
Posts: 1

Rep: Reputation: Disabled
Changing IP's/routing issue


Hi,

Ok, ill try explain the situation as clearly as possible.

I've taken over looking after some server's for a company and there's some routing issues I'm looking at caused by incorrect IP's being assigned.

The main firewall has eth0, eth1, eth2 and a few tun interfaces.
eth1 is used for public facing IP's. The other two interfaces *should* be assigned private 192.168.X.X addresses.

However, previous engineers assigned 192.166.X.X to these private interfaces and of course these are public IP's.

There is a server which sits behind the firewall which also has 192.166.X.X assigned and it's gateway also uses the firewall's eth2 assigned 192.166.X.X address. To complicate things even more, this server hosts 3 VM's which also have the 192.166.X.X addresses.

My task is to change all these wrong IP's to correct local addresses, ideally remotely without losing connection.

My connection to the firewall is via a tun interface created from an external source. I have added IP aliases to all the interfaces with the wrong IP's, e.g eth0:1.. on all the machines behind the firewall and brought the aliases up.

I then did the same on the firewall by creating an alias for the wrong address on eth2

I've then checked the route command and verified the default gateway is set correct on the server behind the firewall which is now correct.

This has all been done, however the VM's and VM host is still not routing correctly. I think this is because the firewall rules need refreshing to see the new interface IP's (it uses shorewall which references the interface names mainly rather than specific IP's and uses masq/SNAT).

I'm going to do a shorewall safe restart tomorrow in the hope that everything will just start to work with these new IP's and I won't get locked out.

It would be handy if anyone has any further advice, any suggestions on a better way of doing this, or if there's anything I've missed?

Also, I'm not sure how to remove the main incorrect eth0,eth2 interfaces without bringing down the aliases. Is there any easy way to swap them?
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Routing issue guanyu Linux - Networking 1 09-10-2006 06:55 AM
changing routing table in Debian sarge linian Linux - Networking 2 07-26-2006 12:14 AM
routing issue.. inode100 Linux - Networking 12 02-25-2004 03:52 PM
changing non-main routing tables ? laclac01 Linux - Networking 1 02-20-2004 09:51 AM
again: routing issue! mule Linux - Networking 4 08-07-2003 08:43 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Networking

All times are GMT -5. The time now is 11:51 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration