Just comment out the interfaces you don't need in /etc/network.conf and
make this right
# Interfaces to start on boot go here - ie "ppp0 eth0"
IF_AUTO="eth0 eth1"
Quote from Charles about Extended Scripts V1.1:
DMZ_SWITCH=YES is for a conventional routed OR static NAT DMZ
DMZ_SWITCH=PRIVATE is for port-forwarded DMZ's.
Lonnie Cumberland wrote:
> Hi There,
>
> Actually I was also interested in only needing 2 ethernet cards as
> the scripts that I have seen seem to need 3.
>
> I also wanted to not use masqurading on the 192.168.x.x at all and
> just be allowed to let let my machines behind the firewall keep their
> existing static IP's but still be behind the firewall.
>
> I will look over the information that you have sent me.
>
> Thanks again,
> Lonnie
>
> > If I follow you correctly, you are looking to put the old
> > machines in the DMZ (on eth2), in order to preserve their current
> > IP addresses. I am running a Proxy ARP setup using the
> > Eigerstein2Beta distro, with modified scripts from the LRP-CD
> > distro (the only one advertised to work with Proxy ARP).
> >
> > I am not aware of a complete distro for this setup --- if there
> > was one, I wouldn't have needed to build my "by hand." In any
> > event, I don't believe you have much to worry about when it comes
> > to masquerading on eth2. There is a dab masq functionality for
> > UDP services built into the DMZ scripts, but that is easy enough
> > to disable, as Charles spelled out here:
> > http://www.geocrawler.com/archives/3/7325/2001/6/350/5991180/
> >
> > Scroll thru that message, to the part that starts "I think I know
> > hy...." ---- because he _did_ :)
> >
> > That will turn off the udp masq leaving you with a DMZ that is
> > controlled by only the settings in your DMZ_OPEN_DEST section.
> >
> > FWIW, I was a rank noob to not only LRP, but *nix in general when
> > I undertook this, and an *I* got it working without
> > </subjective=on> too much </subjective=off> trouble. :)
> >
> > Good luck,
> >
> > Dan
> >
> > -----Original Message-----
> > From: [EMAIL PROTECTED]
> > [mailto:[EMAIL PROTECTED]]On Behalf Of Lonnie
> > Cumberland
> > Sent: Thursday, July 12, 2001 10:39 AM
> > To: [EMAIL PROTECTED]
> > Subject: [Leaf-user] EigerStein DMZ v1.1 Proxy ARP installation
> >
> >
> > Hello All,
> >
> > I have been looking at the EigerStein DMZ v1.1 Proxy ARP
> > installation
> > and am trying to find a completed distrabution that does not have
> > the
> > masqurading ethernet 2 card stuff in the scripts.
> >
> > does anyone have a complete distribution that I could get with
> > just the DMZ Proxy-ARP or some information on where to locate the
> > scripts that I need.
> >
> > I am currently using the static version of the Eigersten LRP
> > which has masqurading and works very well along with being very
> > easy to install. I now have a need for the Proxy-ARP version
> > because I will be
> > installing an LRP that will allow the existing computers to keep
> > there OLD static IP's
> >
> > Any ideas would be helpful?
> > Thanks again,
> > Lonnie
> >
> > --
> > Lonnie Cumberland
> > OutStep Technologies Incorporated
> >
_______________________________________________
Leaf-user mailing list
[EMAIL PROTECTED]
http://lists.sourceforge.net/lists/listinfo/leaf-user