[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: OpenBSD Firewalling (Long, drawn out - be warned)



First off what type of connection do you have is it adsl or cable. And that really does not matter because you must have the device that the isp provides you. Zyxel is a after market router is it not. I am not sure I understand what you are trying to get rid of here. usually it would look something like this




Internal Net------switch------zyxelrouterwww.zyxel.com-----cablemodem------internet
					OpenBSD goes here			you can't
										get rid of
										this device

www.digitalrage.org latest in Technical News and HowTo's
www.digitalrage.org/phpBB Discussion Forums


-----Original Message-----
From: Que Bang [mailto:quebang@hotmail.com]
Sent: Monday, February 11, 2002 3:57 PM
To: misc@openbsd.org
Subject: OpenBSD Firewalling (Long, drawn out - be warned)


This weekend, I thought I'd give a shot to firewalling my home net better 
than it is.

Current setup:

========,    ,========================,    ,==========
Switch ------ Zyxcel Router/Modem/FW ------ INTERNET
========`    '========================'    '==========
   |
Internal
Network

For arguments sake, lets say the internal network is 192.168.1.0 and the 
firewall/router/modem carries one non-routable IP (192.168.1.1) that acts as 
the gateway for the internal net, and one routable IP that is the Internet 
IP.

What I would LIKE to do is (ditch the router/modem thing.. it does not do 
ANYTHING next to what I want.;) )go SWITCH to OBSD FIREWALL/NAT to Zyxcel to 
INTERNET.  I would set the Zyxcel to forward everything (any any) to and 
from the OBSD box.

A) Will this work? (I understand routing a to b but not the protocol layers)
B) Is there someone who would be willing to help me go over my rulset to see 
if it is correct?

I have made exactly one attempt, and it failed.. then it occured to me that 
maybe this just WON'T work at all.

If this WON'T work, what type of device should I buy for my OBSD box to make 
the PPPoE connection to my ISP? (I would actually like to know this anyway)


Thanks!


_________________________________________________________________
MSN Photos is the easiest way to share and print your photos: 
http://photos.msn.com/support/worldwide.aspx