----- Original Message -----
From: "Jonathan Monk" <[EMAIL PROTECTED]>
To: <[EMAIL PROTECTED]>
Sent: Tuesday, March 26, 2002 9:11 AM
Subject: Re: [Leaf-user] Bering Firewall without NAT


> Have made significant progress since Dan and Tom posted some tips.
>
> I have set the internal interface to a RFC1918 ip and the external to a
> x.y.z.3 with gw=x.y.z.1.
>
> I have managed to get the firewall going happily enough by using
shorewalls
> ProxyARP but I was wondering about Toms suggestion of using :
>
>     echo 1 > /proc/sys/net/ipv4/config/all/proxy_arp
>
> to work for all machines behind the firewall.
>
> I did this and then replaced the route for 134.36.22. addresses to use the
> internal interface rather than the external interface but wasnt able to
see
> in or out of the firewall.
>

I don't understand that part -- can you elaborate?

Why the routing change?
What does "wasn't able to see in or out of the firewall" mean? (what level
of analysis did you do?)

-Tom


_______________________________________________
Leaf-user mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user

Reply via email to