Hi,

I've two LANs linked by my provider's VPN. IP is used on both sides, IPX on
LAN B


        LAN A        +++++++++++   provider's VPN over Internet  ++++++++++
LAN B
       ------------  !     Router  A   ! ===================== !   Router  B
!---------------------
            IP            +++++++++++
++++++++++        IP / IPX


The problem is that my provider's can browse LAN A and LAN B.

To solve it, I thought of setting up a VPN over two bridges/firewalls and
block everything from routers but the VPN.


                       +++++++++++             ++++++++    My VPN
++++++++                  ++++++++++
      LAN A     !
=========================================================        !     LAN B
      -----------!    Bridge /      !---------! Router A !==============!
Router B !------------!   Bridge /     !-----------------------------
         IP          !    Firewall A  !              ++++++++   Provider's
VPN    ++++++++                   !   Firewall B  !      IP/IPX
                       +++++++++++
++++++++++


But a problem still remains on LAN B. If the provider activates IPX protocol
in his router, he will be able to browse LAN B.

So, now I'd like to allow only IP protocol on my bridges/Firewalls. I
thought of using ebtables but I've not found a package for Bering.

Has anyone an idea how to solve my problem ?

Regards

Pascal OFFREDO


_____________________________________________________________________
Envie de discuter en "live" avec vos amis ? Télécharger MSN Messenger
http://www.ifrance.com/_reloc/m la 1ère messagerie instantanée de France



-------------------------------------------------------
This SF.net email is sponsored by: Scholarships for Techies!
Can't afford IT training? All 2003 ictp students receive scholarships.
Get hands-on training in Microsoft, Cisco, Sun, Linux/UNIX, and more.
www.ictp.com/training/sourceforge.asp
------------------------------------------------------------------------
leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html

Reply via email to