UFW and subnet routing
I have a ubuntu server running as a router between two subnets, 10.10.16.0/24 and 10.10.20.0/24. My goal is to control which traffic crosses subnets using UFW and isolate hosts on the 10.10.16.0 subnet similar to a DMZ. Here's a rough diagram of my set up, I have 3 hosts I'm working with, 1 in the 16.0 subnet and 2 in the 20.0 subnet with my gateways .254 respectively on the router for both subnets:
Code:
ROUTER Code:
To Action From Code:
#NAT Rules I'm not an expert when it comes to routing and networking and I'm still learning Linux. I feel I'm missing something basic here so any help is greatly appreciated. |
Do you know deny rule like 10.10.16.0/24 DENY 10.10.20.0/24 is working? Is deny rule like 10.10.16.10 DENY 10.10.20.100 working?
|
Didn't seem to make a difference. Added the following rule:
Code:
ufw deny from 10.10.20.100 to 10.10.16.10 |
It look like UFW didn't work. You need make sure UFW work in the system.
Yes, iptable is another option. |
All times are GMT -5. The time now is 10:03 PM. |