LinuxQuestions.org
Share your knowledge at the LQ Wiki.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices


Reply
  Search this Thread
Old 05-20-2003, 03:56 AM   #1
J_Szucs
Senior Member
 
Registered: Nov 2001
Location: Budapest, Hungary
Distribution: SuSE 6.4-11.3, Dsl linux, FreeBSD 4.3-6.2, Mandrake 8.2, Redhat, UHU, Debian Etch
Posts: 1,126

Rep: Reputation: 58
Separate firewall interface?


I would like to know your opinion about the following:

I want to put a separate, third NIC into our internet gateway machine. The only function of this interface would be to let me build the internet firewall I imagine.

Why I need a separate interface for this? The firewall I want would use the advanced stateful rules of ipfw, which, however cannot be implemented on our present oif, where natd (IP masquerading) would interfere with the dynamic firewall rules.
So far I never heard of anyone successfully making ipfw's advanced stateful rules and natd work on the same network interface.

Then came the idea that I could put an additional interface in front of the present oif, and setup the firewall there. (I would like to avoid using a separate router or firewall machine, if my aim could be established e.g. by adding only an additional NIC)
Since I am a green newbie to routing and also to firewalls, I wonder if this idea has any drawbacks, or even if it can be implemented.
So, what is your opinion?
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Linux router/firewall box for shared Internet access from 3 separate LANs? dan.patton Linux - Networking 4 04-15-2006 05:37 PM
Firewall Web Interface SolidSnake Linux - Security 2 10-04-2004 08:37 AM
Separate Partitions for Separate User groups volvic Slackware - Installation 2 09-16-2004 02:42 AM
Separate firewall logs and general logs dominant Linux - General 3 04-20-2004 01:26 AM
free web interface firewall configurator Snake007uk Linux - Security 6 09-24-2002 09:21 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Networking

All times are GMT -5. The time now is 12:00 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration