----- Original Message ----- From: "Jonathan Monk" <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent: Tuesday, March 26, 2002 9:11 AM Subject: Re: [Leaf-user] Bering Firewall without NAT
> Have made significant progress since Dan and Tom posted some tips. > > I have set the internal interface to a RFC1918 ip and the external to a > x.y.z.3 with gw=x.y.z.1. > > I have managed to get the firewall going happily enough by using shorewalls > ProxyARP but I was wondering about Toms suggestion of using : > > echo 1 > /proc/sys/net/ipv4/config/all/proxy_arp > > to work for all machines behind the firewall. > > I did this and then replaced the route for 134.36.22. addresses to use the > internal interface rather than the external interface but wasnt able to see > in or out of the firewall. > I don't understand that part -- can you elaborate? Why the routing change? What does "wasn't able to see in or out of the firewall" mean? (what level of analysis did you do?) -Tom _______________________________________________ Leaf-user mailing list [EMAIL PROTECTED] https://lists.sourceforge.net/lists/listinfo/leaf-user