LinuxQuestions.org
Review your favorite Linux distribution.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices


Reply
  Search this Thread
Old 10-22-2007, 10:17 AM   #1
blake11
LQ Newbie
 
Registered: Oct 2007
Posts: 3

Rep: Reputation: 0
Debian Gateway Help


I have a LAN which I am very happy with at the moment. I am using a Linksys WAG5GX2 ADSL modem/wi-fi router with 3 wired and 2 wireless computers behind it.

1 of the wired machines is my Debian box (with 1 NIC) which acts as a web server, mail server, DNS server and file server (and probably a few more servers which I've forgotten!)

But, I am told it would be better if I had another machine, running Shorewall or similar on it, as a gateway between the internet and my LAN - but I am unsure how to do this.

I have a seperate USB ADSL modem (a BT Voyager 150) which I used when I only had one PC. I want this to connect to the gateway, and then the gateway connects to my Linksys router which (I think) would share the Internet connection.

How would I go about doing this?

Thanks very much!

Last edited by blake11; 10-22-2007 at 10:19 AM.
 
Old 10-22-2007, 11:44 AM   #2
farslayer
LQ Guru
 
Registered: Oct 2005
Location: Northeast Ohio
Distribution: linuxdebian
Posts: 7,249
Blog Entries: 5

Rep: Reputation: 191Reputation: 191
Actually if I had a machine providing Internet accessible services I would want to put it in a DMZ interface separate from the rest of my internal network.

Code:
Internet
     |
     |
(public / Internet)
     |
     |
   <eth0>
Shorewall firewall<eth1>-------(DMZ)-------Web Server
   <eth2>
     |
     |
(private / Internal LAN)
     |
     |
Rest of the PC's on your LAN 
the DMZ feature on your broadband router is a misnomer. if the DMZ area is the same area as the internal LAN there is no separation, so therefore no true DMZ..

A firewall with 3 Interfaces (public / DMZ / Private ) can provide that true separation, to achieve the security level you should have.

Last edited by farslayer; 10-22-2007 at 11:46 AM.
 
Old 10-23-2007, 12:11 PM   #3
blake11
LQ Newbie
 
Registered: Oct 2007
Posts: 3

Original Poster
Rep: Reputation: 0
thanks farslayer, that is now going to be my weekend project!

However, I am unsure which router to buy. It needs to be wireless, but also needs to have about 6 ethernet connections availible as well. I've been looking on ebuyer.co.uk, but I cannot find one. What should I get?

Last edited by blake11; 10-23-2007 at 12:16 PM.
 
Old 10-23-2007, 01:32 PM   #4
farslayer
LQ Guru
 
Registered: Oct 2005
Location: Northeast Ohio
Distribution: linuxdebian
Posts: 7,249
Blog Entries: 5

Rep: Reputation: 191Reputation: 191
thought you were going to build a firewall using a PC with multiple interfaces, and something like Shorewall...


For purchase, at a reasonable cost, with wireless and separate DMZ interface.. hrm..
http://www.provantage.com/zyxel-zywall2wg~7ZYXF005.htm
Quote:
The ZyWALL 2WG offers the Secure Zone technology that SOHO users can simply deploy access servers in a DMZ zone separated from the trusted local network (LAN). The DMZ zone and WLAN zone have their own DHCP service, and all zones are securely segregated by firewall rules.
 
Old 10-24-2007, 01:21 AM   #5
blake11
LQ Newbie
 
Registered: Oct 2007
Posts: 3

Original Poster
Rep: Reputation: 0
Quote:
Originally Posted by farslayer View Post
thought you were going to build a firewall using a PC with multiple interfaces, and something like Shorewall...


For purchase, at a reasonable cost, with wireless and separate DMZ interface.. hrm..
http://www.provantage.com/zyxel-zywall2wg~7ZYXF005.htm
I am, but this router is to is for the LAN after the firewall as I want to upgrade my current one!

Thanks for the suggestion anyway.

Last edited by blake11; 10-24-2007 at 01:33 AM.
 
Old 10-24-2007, 07:23 PM   #6
farslayer
LQ Guru
 
Registered: Oct 2005
Location: Northeast Ohio
Distribution: linuxdebian
Posts: 7,249
Blog Entries: 5

Rep: Reputation: 191Reputation: 191
Oh well if you don't need the DMZ on the router, then you can go with a less expensive solution than that Zywall..

Netgear, or Linksys would be a decent choice.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
debian gateway setup gzober Linux - Networking 10 07-09-2007 07:39 AM
ME gateway debian nickmon Linux - Newbie 8 10-21-2006 01:57 PM
Debian on a Gateway mx6445 replica9000 Linux - Laptop and Netbook 3 09-17-2006 09:09 PM
Debian Internet Gateway help acidbreez Debian 1 08-10-2003 06:59 PM
Debian Internet Gateway help acidbreez Linux - Networking 0 08-10-2003 06:32 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Networking

All times are GMT -5. The time now is 03:26 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration