On Mon, 17 Jan 2000, Chuck Pierce wrote:
> I am trying to setup a linux box to route ip traffic between six
> diffrent physical networks. I have gotten the box to route traffic
> between the six interfaces, but it routes everything everywhere..
> What I am interested in doing is this:
> -eth0 will route traffic to eth2,eth3,eth4,and eth5 (and not to eth1)
> with no restrictions on outbound traffic, but not allowing any (accept
> returning packets) inbound traffic.
> -eth1 will be routed eth2,eth3, and eth4 and will not have any access
> to eth0 or eth5, and have similar restrictions as eth0
>
> my question is should I use ipchins or policy routing (iproute2) do
> to this?? where is a good place to read up on what the "best" way of
> doing this is??
>
> thanks - Chuck
It should be easy to set up with ipchains, especially if your physical
networks has a sane correspondence with the ip networks.
If it doesn't, perhaps it would be better to sit down and rethink your
design.
--
Henrik Olsen, Dawn Solutions I/S URL=http://www.iaeste.dk/~henrik/
`I was told it was the finest thing to die for a god,' Simony mumbled.
`Vobis said that. And he was . . . stupid. You can die for your country
or your people or your family, but for a god you should live fully and
busily, every day of a long life.' Terry Pratchett, Small Gods
-
To unsubscribe from this list: send the line "unsubscribe linux-net" in
the body of a message to [EMAIL PROTECTED]