LinuxQuestions.org
Visit the LQ Articles and Editorials section
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices

Reply
 
Search this Thread
Old 11-23-2001, 03:39 PM   #1
ikhwan98
LQ Newbie
 
Registered: Nov 2001
Posts: 3

Rep: Reputation: 0
linux firewall with internet zone, dmz and trusted zone


i am using redhat 7.0, kernel 2.2.16 and ipchains using 3 nics.

i am setting a linux box as a firewall that connect directly to a cisco 1600 series router and breaks up the network into a dmz and trusted network zone.

i have done the necessary changes in the kernel routing on the firewall that is :

route to subnet 202.1.1.0 is via interface 202.1.1.3 this is done by removing the one for interface 202.1.1.1.
route to 202.1.1.1 the gateway is 202.1.1.2.


the router lan port has a public ip 202.1.1.1.
the firewall internet port has a public ip 202.1.1.2.
the dmz nic has a public ip 202.1.1.3.
the trusted nic has a private ip 192.168.0.1 masquerading all traffic.

my problem here is after setting an ip route on the router stating that the gateway for 202.1.1.0 network is via 202.1.1.2 the dmz zone is not accessible from the internet but the trusted network has no problems accessing to and from the internet and the dmz.

is this scenario a router or linux issue.

i have setup the forwarding rules properly.

can anyone provide any tips to configure a cisco router to function properly here if it is the router issue.
 
Old 11-27-2001, 04:45 AM   #2
raz
Member
 
Registered: Apr 2001
Location: London
Posts: 408

Rep: Reputation: 31
It could be either.

Show us the output from

route -n
ifconfig -a

Also how many IP addresses have you got assigned to you to use and has someone setup the router to route to the firewalls external ip address for the whole subnet. ?

/Raz
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Help Firewall Zone Alarm Pro Avenge19 Linux - Newbie 3 10-17-2004 05:52 AM
Help Firewall Zone Alarm Pro Avenge19 Suse/Novell 1 10-17-2004 04:07 AM
undefined zone dmz and localdomain not found? scammeh^ Linux - Networking 1 11-15-2003 09:47 AM
creating a pseudo-dmz zone bobster666 Linux - Networking 2 02-13-2003 09:49 AM
Linux firewall with internet & dmz & trusted ikhwan98 Linux - Networking 0 11-23-2001 07:59 AM


All times are GMT -5. The time now is 11:13 AM.

Main Menu
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
identi.ca: @linuxquestions
Facebook: linuxquestions Google+: linuxquestions
Open Source Consulting | Domain Registration