I'm confused about how the proxyarp function should behave when its is
working.  Hopefully someone can help clear this up...

I have a dsl with 5 static ips (x.x.x.208/29) and a few servers to run
behind Bering-ucubic.  I was under the impression that on the external
interface (dsl) the firewall would respond to requests for the adddresses of
the servers (x.x.x.210, .211, .212) and on the internal interface it would
proxy everything other than the local machines (eg the external world)

However it appears that it is also proxying on the internal interface as
well.  This shows up a couple of ways. First off  I get a duplicate ip
address warning if i boot the servers after the firewall. Second when I ping
from one server to another server (which might assume would not involve the
firewall) it doesn't work right and arp -a show the mac address of the other
server as the mac address of the firewall (stated another way if I ping
another server and then the firewall both address in the arp table are the
same)

I'm using the shorewall/proxyarp to individually list each server, proxyarp
is not set in shorewall/interfaces file. the servers are configured to using
the same info that they would have without the firewall.  If there are any
files that would assist in figuring this out let me know

My basic problem is that I haven't found any information on how proxyArp is
black box and I haven't been able to figure it out yet...

Thanks in advance

Andy




-------------------------------------------------------
This SF.Net email is sponsored by: YOU BE THE JUDGE. Be one of 170
Project Admins to receive an Apple iPod Mini FREE for your judgement on
who ports your project to Linux PPC the best. Sponsored by IBM.
Deadline: Sept. 24. Go here: http://sf.net/ppc_contest.php
------------------------------------------------------------------------
leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html

Reply via email to