[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: OpenBSD Firewalling (Long, drawn out - be warned)
- To: "Que Bang" <quebang@hotmail.com>, <misc@openbsd.org>
- Subject: Re: OpenBSD Firewalling (Long, drawn out - be warned)
- From: "Elijah Savage" <esavage@digitalrage.org>
- Date: Mon, 11 Feb 2002 19:04:03 -0500
- content-class: urn:content-classes:message
- Thread-Index: AcGzPwk66DSmbFTUSJ6h729fOkh2LgAGNZwA
- Thread-Topic: OpenBSD Firewalling (Long, drawn out - be warned)
First off what type of connection do you have is it adsl or cable. And that really does not matter because you must have the device that the isp provides you. Zyxel is a after market router is it not. I am not sure I understand what you are trying to get rid of here. usually it would look something like this
Internal Net------switch------zyxelrouterwww.zyxel.com-----cablemodem------internet
OpenBSD goes here you can't
get rid of
this device
www.digitalrage.org latest in Technical News and HowTo's
www.digitalrage.org/phpBB Discussion Forums
-----Original Message-----
From: Que Bang [mailto:quebang@hotmail.com]
Sent: Monday, February 11, 2002 3:57 PM
To: misc@openbsd.org
Subject: OpenBSD Firewalling (Long, drawn out - be warned)
This weekend, I thought I'd give a shot to firewalling my home net better
than it is.
Current setup:
========, ,========================, ,==========
Switch ------ Zyxcel Router/Modem/FW ------ INTERNET
========` '========================' '==========
|
Internal
Network
For arguments sake, lets say the internal network is 192.168.1.0 and the
firewall/router/modem carries one non-routable IP (192.168.1.1) that acts as
the gateway for the internal net, and one routable IP that is the Internet
IP.
What I would LIKE to do is (ditch the router/modem thing.. it does not do
ANYTHING next to what I want.;) )go SWITCH to OBSD FIREWALL/NAT to Zyxcel to
INTERNET. I would set the Zyxcel to forward everything (any any) to and
from the OBSD box.
A) Will this work? (I understand routing a to b but not the protocol layers)
B) Is there someone who would be willing to help me go over my rulset to see
if it is correct?
I have made exactly one attempt, and it failed.. then it occured to me that
maybe this just WON'T work at all.
If this WON'T work, what type of device should I buy for my OBSD box to make
the PPPoE connection to my ISP? (I would actually like to know this anyway)
Thanks!
_________________________________________________________________
MSN Photos is the easiest way to share and print your photos:
http://photos.msn.com/support/worldwide.aspx