I'm reading up on proxyarp/dmz using
Bering1.0Stable/Shorewall. I'm a bit confused by the last
sentence in the following exerpt from the Shorewall docs:

"/etc/shorewall/proxyarp

If you want to use proxy ARP on an entire sub-network, I
suggest that you look at
http://www.tldp.org/HOWTO/mini/Proxy-ARP-Subnet/. If you
decide to use the technique described in that HOWTO, you
can set the proxy_arp flag for an interface
(/proc/sys/net/ipv4/conf/<interface>/proxy_arp) by
including the proxyarp option in the interface's record in
/etc/shorewall/interfaces. When using Proxy ARP
sub-netting, you do NOT include any entries in
/etc/shorewall/proxyarp. "
                                  ^^^^^^^^^^^^^^^^^^^^^^^
Does Tom mean /etc/shorewall/interfaces? I have 5 public
IPs of which 1 resides on eth0 and 3 others withing the
DMZ on eth2. I would need to adjust
/etc/shorewall/proxyarp - correct?

Thanks,
Stephen





-------------------------------------------------------
This sf.net email is sponsored by:ThinkGeek
Welcome to geek heaven.
http://thinkgeek.com/sf
------------------------------------------------------------------------
leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html

Reply via email to