Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Chriss Miller on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

transparent firewall

Status
Not open for further replies.

TheGrey

MIS
Joined
Feb 1, 2002
Messages
144
Location
NO
has any of you managed to make a firewall like this:

(using private ip adresses just as an example)

INTERNET
|
GW 10.0.0.1/24
|
FW out nic 10.0.0.2/24
FW in nic 10.0.0.2/24
|
TRUSTED NET

i have experimented with proxy arp , ipfw and ipfilter, but it won't work

what should i use/try?
any suggestions?

i know WatchGuard firewalls are supporting this config.
 
answering myself again (why do i bother? -because i like the ease of use and design of this forum, hoping freebsd people will start to use it as well as m$ people.)

what you need(obviously if you know what you're doing, unlike me )
is a bridge
and ipfw

you can put the freebsd box into any existing tcp/ip network without messing with netmasks and such
you actually don't even need an ip address

this is a good starting point
 
Hello friend,

I have actually had quite a few good discussions on this forum, and axvpaa (a true guru) sometimes answers 10 questions in one night. The reason you didn't get any help here was because you barged into the forum without any consideration for the people who have been using it for years, and helping many. I notice that your other post is gone, so I can only conclude that others felt the same way.

I'm not trying to push you out. I would gladly help you out with any areas that I can, and I have been using FreeBSD for 3 years now. It's just that your initial way of announcing yourself didn't really encourage us to put any effort into the discussion.

So, please don't accuse this forum of being dead. It may not be as active as the VB^H^H^HdotNET forum, but it's quality that counts rather than quantity (FreeBSD is a perfect example of that). With a little patience, you can learn a great deal here ;-). (Also, try the Unix forum, and the Unix Scripting forum). -------------------------------------------

"Calculus is just the meaningless manipulation of higher symbols"
                          -unknown F student
 
thanks for the feedback
sorry that you (and probably others as well) feel it that way, after all i am , as you say , new here

fyi, it was I , myself, who got the other post deleted
 
Ah, I see. Well, welcome to the FreeBSD forum.

By the way, there is another good online forum for FreeBSD at
Enjoy. You will never find the FreeBSD forums to be as active as the other forums, because *BSD users tend to actually read the documentation before they try things. This actually makes for much more interesting discussions, because we don't have to answer for the 50th time "how do I find out about disk usage stats?", etc... So we can focus on the more advanced stuff that might not be easy to get from the HOWTOs. -------------------------------------------

"Calculus is just the meaningless manipulation of higher symbols"
                          -unknown F student
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top