IP Passthru is a GTA supported function. The configuration I attempted to
describe does not require proxy ARP ... all required addresses are defined
on the EXT interface. It does require the GnatBox internally to do
interface based routing and since GnatBox claims to support use of an
external address on an internal network, I surely would complain.

I disagree with your opinion of the network design. IP Passthru is the
basic firewall approach advocated by the gurus in the IETF leadership, in
particular not to use NAT.

Dave Morris

On Tue, 27 May 2003, Dan Swartzendruber wrote:

> At 07:49 PM 5/27/2003 -0400, Jon Schlegel wrote:
> >Dan,
> >
> >It looks like Dave's chosen networks have the same broadcast
> >address.  Will in matter that the two interfaces are different physical
> >networks or is that what proxy ARP is about.  Not familiar with proxy ARP.
>
> If the subnets don't overlap, proxy arp is where when the DSL router ARPs
> for address X, but address is
> on the PSN, not the EXT, the gnatbox would lie and say "that's me!" and
> route the packets to it.  usually
> not a good network decision, but sometimes necessary when the IP space has
> to be mucked with.  if the
> subnets overlap, i just can't believe it works - this is terrible
> networking practice, and GTA could break it at
> any time, and you'd have no cause for complaint!
>
> ------------------------------------------------------
> To unsubscribe:           [EMAIL PROTECTED]
> For additional commands:         [EMAIL PROTECTED]
> Archive:  http://www.mail-archive.com/[EMAIL PROTECTED]

------------------------------------------------------
To unsubscribe:           [EMAIL PROTECTED]
For additional commands:         [EMAIL PROTECTED]
Archive:  http://www.mail-archive.com/[EMAIL PROTECTED]

Reply via email to