Re: [LARTC] bridge or vlan

2007-10-22 Thread Grant Taylor
On 10/22/07 15:50, Vaidas M wrote: Thanks for your answer, this would help. You are welcome. I think I know how to block arp: -p ARP -j DROP something like that, ant the broadcasts: --pkttype-type ... Be careful blocking all ARP / broadcasts. Remember that equipment will need to ARP to fi

Re: [LARTC] bridge or vlan

2007-10-22 Thread Grant Taylor
On 10/20/07 06:23, Vaidas M wrote: Hello to everyone, Here is the situation: [LAN1]---[eth3]/--\ | LinuxBR |[eth2]---[LAN0]---[linuxGW]---[internet] [LAN2]---[eth4]\--/ Whole LAN is in subnet 10.0.0.0/24. So I need: LAN0, LAN1, LAN2 could not see each other. L

Re: [LARTC] bridge or vlan

2007-10-20 Thread Pan'ko Alexander
On Sat, 20 Oct 2007 14:23:12 +0300 "Vaidas M" <[EMAIL PROTECTED]> wrote: > Hello to everyone, > > > > Here is the situation: > > [LAN1]---[eth3]/--\ > >| LinuxBR |[eth2]---[LAN0]---[linuxGW]---[internet] > > [LAN2]---[eth4]\--/ > > Whole LAN is in subnet 10

[LARTC] bridge or vlan

2007-10-20 Thread Vaidas M
Hello to everyone, Here is the situation: [LAN1]---[eth3]/--\ | LinuxBR |[eth2]---[LAN0]---[linuxGW]---[internet] [LAN2]---[eth4]\--/ Whole LAN is in subnet 10.0.0.0/24. So I need: LAN0, LAN1, LAN2 could not see each other. LAN0, LAN1, LAN2 is in same s

Re: [LARTC] bridge and ipp2p question

2007-01-19 Thread Roberto Pereyra
Thanks Marco. Very useful your reply. Roberto 2007/1/18, Marco Aurelio <[EMAIL PROTECTED]>: This is not possible because ipp2p does not match every p2p packet but only some essential signaling packets. By filtering these packets, the p2p client cannot estabilish connections to transfer data,

Re: [LARTC] bridge and ipp2p question

2007-01-18 Thread Marco Aurelio
This is not possible because ipp2p does not match every p2p packet but only some essential signaling packets. By filtering these packets, the p2p client cannot estabilish connections to transfer data, and that's how it filters it. Sometimes, ipp2p 'discovers' that this is a p2p related connection

[LARTC] bridge and ipp2p question

2007-01-17 Thread Roberto Pereyra
Hi all !!! I have a firewall bridge (not router) with two nics that filter p2p with ipp2p. All works fine but now I need to add a third nic to route all p2p traffic through this nic. It is that possible with a bridge ? Later (with other server) connect to this nic I do loading balancin

[LARTC] Bridge HFSC QOS ... strange TC values ...

2006-12-05 Thread Sébastien CRAMATTE
Hello, I’ve setuped HFSC QOS using as this script http://automatthias.wordpress.com/2006/06/30/hfsc-and-voip/ I've a bridge with eth0 and eth1 inside br0 I haven't use ebtables, just iptables. I neeed to have different value on upload and download this why I've setuped QOS on 2 interfaces I

[LARTC] Bridge HFSC QOS questions ...

2006-12-05 Thread Sébastien CRAMATTE
Hello, I've got somes questions about Bridge and QOS ... I've got a serveur with 2 interfaces eth0,eth1 inside br0 bridge ... nothing of special ... If I understand all, normally I should configure TC class and qdisc on each physical or use ebtables to manage packets on output ... right ? I'v

Re: [LARTC] Bridge and Router on the same device

2006-11-16 Thread Abel Martín
On 11/13/06, Net Cerebrum <[EMAIL PROTECTED]> wrote: I want to configure a device with three network interfaces where two of them would bridge two segments of the LAN subnet and the third one would be connected to the WAN link. eth0 - 10.10.10.2/24 to be connected to the internet gateway having

[LARTC] Bridge and Router on the same device

2006-11-12 Thread Net Cerebrum
I want to configure a device with three network interfaces where two of them would bridge two segments of the LAN subnet and the third one would be connected to the WAN link.eth0 - 10.10.10.2/24 to be connected to the internet gateway having IP 10.10.10.1/24 (also the default gateway for the devic

[LARTC] bridge stops bridging

2006-11-12 Thread Andy Furniss
I recently upgraded my gateway to a pIII 600 with a zyxel 4 port nic (tulip) and bridge eth0 and eth1, eth0 is a crossover cable to my PC eth1 a switch. I don't have ifconfig on this box (LFS) and couldn't find any examples of bridging using ip - maybe this is relevant maybe not - I've tried a fe

[LARTC] bridge + extra nic traffic shaping

2006-04-08 Thread William Bohannan
Hi I am using traffic shaping on br0 and working nicely.  Only problem is when I nat off br0 with a third nic I run into the following problems when traffic shaping: Wondering if anyone has had success with the following layout???                           __br0(eth0,eth1)-e

[LARTC] bridge & QoS

2006-02-16 Thread Roberto Scattini
hi everybody. i have a bridge, and i want to apply QoS with htb and layer7 on both interfaces(eth0 and eth1), should i apply qdiscs and classes to each individual interface (eth0 and eth1, not br0)? if someone is using layer7, which is the right place to put the iptables rules to assure tha

[LARTC] bridge with packetrate limiter and absolute priority?

2005-04-06 Thread Dag Bakke
Hi. I am trying to bend my brain around 'tc' and friends and am failing so far. I need to set up a bridge which limits the packet rate to 2000 packets/s, but with the added twist that packets with a certain DSCP value must be given absolute priority in both directions. The packet rate limit thi

RE: [LARTC] Bridge + TC

2004-03-16 Thread miller69
> I posted out on this problem some time ago and could never get 2.4.25 or > any 2.6 kernel to work with TC + Bridging. If anyone has this working > and has actually tested it (I am actually just doing IP based iptables > filtering from my bridge interface) please let us know what version of >

Re: [LARTC] Bridge + TC

2004-03-15 Thread Jon Anderson
Roy Walker wrote: I posted out on this problem some time ago and could never get 2.4.25 or any 2.6 kernel to work with TC + Bridging. If anyone has this working and has actually tested it (I am actually just doing IP based iptables filtering from my bridge interface) please let us know what versi

RE: [LARTC] Bridge + TC

2004-03-15 Thread Roy Walker
EMAIL PROTECTED] Subject: Re: [LARTC] Bridge + TC Hi, > I have also tried that. I'm using 2.6.3-mm3 -> packets don't seem to > Perhaps the key here is 2.4. I might have to revert... There was a change with kernel 2.6.0 for incoming and outgoing interfaces of a bridge device (at lea

Re: [LARTC] Bridge + TC

2004-03-15 Thread miller69
Hi, > I have also tried that. I'm using 2.6.3-mm3 -> packets don't seem to > Perhaps the key here is 2.4. I might have to revert... There was a change with kernel 2.6.0 for incoming and outgoing interfaces of a bridge device (at least for iptables - that's why I'm guessing it also affects ebtable

Re: [LARTC] Bridge + TC

2004-03-15 Thread Jon Anderson
Jeroen Vriesman wrote: So I would suggest testing: 1) no filter rule for 1:10 which is default This shouldn't affect things in the end though, correct? (I.e. it's overkill, but it won't hurt anything, right?) (I've also had it pass by default through the 1:1, in which case nothing passed th

Re: [LARTC] Bridge + TC

2004-03-15 Thread Jeroen Vriesman
Hi, I've got an almost simular setup, which is working fine. something I noticed: You say everything is going into class 1:10, which is both your default AND you got a filter for it <-?? I also see that your "default filter" has handle 1, in my setup the handles of the filters are unique. For

[LARTC] Bridge + TC

2004-03-15 Thread Jon Anderson
I'm hoping someone can provide a little input that might help me out a little... I've recently tried to setup a 3-interface transparent bridge, where 2 internal interfaces (eth1,eth2) funnel into 1 outgoing interface (eth0). The idea was to be that eth1 gets priority over eth2 in all cases. Th

Re: [LARTC] Bridge + leased line + tc

2004-01-14 Thread Andy Furniss
On Tuesday 13 January 2004 4:15 pm, Wouter Coppens wrote: > Hi, > > I can't get traffic shaping working. > > This is my situation: > > > -- > Net1 - |router| | TC | --- Net2 > leased line

Re: [LARTC] Bridge + leased line + tc

2004-01-13 Thread Stef Coene
On Tuesday 13 January 2004 17:15, Wouter Coppens wrote: > Hi, > > I can't get traffic shaping working. > > This is my situation: > > > -- > Net1 - |router| | TC | --- Net2 > leased line ---

[LARTC] Bridge + leased line + tc

2004-01-13 Thread Wouter Coppens
Hi, I can't get traffic shaping working. This is my situation: -- Net1 - |router| | TC | --- Net2 leased line -- eth1eth0

Re: [LARTC] bridge

2003-10-15 Thread Lawrence MacIntyre
We'll need a lot more information to help you... Why do you say the bridge is working? What DOES work? What is the configuration of your bridge? On Fri, 2002-09-06 at 03:35, Victor wrote: > I belive I missed something > >| br0 | > test --|eth0 eth1 |- network

[LARTC] bridge

2003-10-15 Thread Victor
I belive I missed something | br0 | test --|eth0 eth1 |- network ftp|tc | If I ping a machine from "network" from the "test ftp" she doen't answers. If I skip the bridge, and I put the "test ftp" in the "network", the ping is working. I have n

[LARTC] Bridge with load balancing

2003-10-13 Thread GoMi
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 I have a question here, i am wondering if changing my setup. I have a linux firewall doing QoS and load balancing with 3 ethernets. I have to DSL connections running at 2Mbit each. So, i was wondering, can i change this setup to set up to bri

[LARTC] bridge over ip other than vtun

2003-03-27 Thread Victor Cassar
Hi: I would like to know how can i bridge traffic between 2 lans over the internet, if posible i prefer to do this using kernel features instead of userspace app of course encryption is desirable but not a most since i can set iptables rules to limit traffic thanks in advance for any comment or

RE: [LARTC] Bridge+QOS

2003-03-17 Thread S Mohan
riginal Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of hare ram Sent: Monday, March 17, 2003 12:35 PM To: [EMAIL PROTECTED] Subject: [LARTC] Bridge+QOS Hi all iam setting up a bridge with QOS Services i would like to you to have coments on setup, is this works i ahve

Re: [LARTC] Bridge+QOS

2003-03-17 Thread Stef Coene
On Monday 17 March 2003 08:04, hare ram wrote: > Hi all > > > iam setting up a bridge with QOS Services > > i would like to you to have coments on setup, is this works > > i ahve setup like this > > LAN--eth1(Bridge)eth0--router--Internet > > > in LAN i have users 10 people > i would like to have Q

[LARTC] Bridge+QOS

2003-03-16 Thread hare ram
Hi all iam setting up a bridge with QOS Services i would like to you to have coments on setup, is this works i ahve setup like this LAN--eth1(Bridge)eth0--router--Internet in LAN i have users 10 people i would like to have QOS Services for 5 people burstable 5 People commited ( bounded b/w w

Re: [LARTC] bridge advice

2002-08-01 Thread Stef Coene
I have some remakst to make. You can't use iptables on a linux bridge. (I think there is a patch that you can, but I'm not sure). And try to patch the kernel for htb (it's a replacement for cbq). And maybe you can try to filter on mac-address so you don't need to know the ip-addresses. Stef

[LARTC] bridge advice

2002-08-01 Thread D. Stimits
I'm about to set up a Linux bridge (kernel 2.4.18.x from Redhat 7.3) between a (future) cable modem and several machines in the house. Some of those machines are windows, mine is Linux (but dual boots to windows). Basically: CABLE_MODEM (DHCP issues to each machine) | |(eth0 --

Re: [LARTC] Bridge with Traffic shaping

2002-07-30 Thread Stef Coene
> I think I caused unnecessary alarm. There was actually > a network cable connecting my router and hub behind the linux > box that does the shaping, duh :-) I forgot to pull it out once I > move some servers around causing very little traffic to go through > the box doing the shaping. :) > Thi

Re: [LARTC] Bridge with Traffic shaping

2002-07-29 Thread Roché Compaan
Hi Stef I think I caused unnecessary alarm. There was actually a network cable connecting my router and hub behind the linux box that does the shaping, duh :-) I forgot to pull it out once I move some servers around causing very little traffic to go through the box doing the shaping. On Mon,

Re: [LARTC] Bridge with Traffic shaping

2002-07-29 Thread Chris K Ellsworth
does not HTB only shape on outgoing traffic? unless you start doing some ingress queues? - Original Message - From: "Stef Coene" <[EMAIL PROTECTED]> To: "Roché Compaan" <[EMAIL PROTECTED]>; <[EMAIL PROTECTED]> Sent: Monday, July 29, 2002 5:54 AM Su

Re: [LARTC] Bridge with Traffic shaping

2002-07-29 Thread Stef Coene
> If I understand correctly I can shape incoming traffic by setting > up a qdisc on eth0 and filters that match any of the ip addresses > in my public subnet sitting behind the linux box that currently does > the traffic shaping. But all traffic coming on eth0 is leaving eht1 and vice versa. So s

RE: [LARTC] Bridge with Traffic shaping

2002-07-28 Thread Roché Compaan
> what kinda bridge are you using? > bridge-nf? if you are it says it only supports iptables, you would have to > mark the packets then use filter to put the marked packets into > teh correct > queue for managing Yes I'm using bridge-nf, but as far as I understand bridge-nf doesn't require ipta

Re: [LARTC] Bridge with Traffic shaping

2002-07-28 Thread Chris K Ellsworth
To: "Stef Coene" <[EMAIL PROTECTED]>; <[EMAIL PROTECTED]> Sent: Sunday, July 28, 2002 10:27 PM Subject: RE: [LARTC] Bridge with Traffic shaping > On Saturday 27 July 2002 19:56, Roché Compaan wrote: > > Hi, > > > > I am fairly new to routing and traffic cont

RE: [LARTC] Bridge with Traffic shaping

2002-07-28 Thread Roché Compaan
> On Saturday 27 July 2002 19:56, Roché Compaan wrote: > > Hi, > > > > I am fairly new to routing and traffic control but I with the > > help of the lartc howto I managed to setup a bridge with htb > > traffic control. The traffic shapping does not seem to work > > as I expected and I would real

Re: [LARTC] Bridge with Traffic shaping

2002-07-28 Thread Stef Coene
On Saturday 27 July 2002 19:56, Roché Compaan wrote: > Hi, > > I am fairly new to routing and traffic control but I with the > help of the lartc howto I managed to setup a bridge with htb > traffic control. The traffic shapping does not seem to work > as I expected and I would really appreciate i

[LARTC] Bridge with Traffic shaping

2002-07-27 Thread Roché Compaan
Hi, I am fairly new to routing and traffic control but I with the help of the lartc howto I managed to setup a bridge with htb traffic control. The traffic shapping does not seem to work as I expected and I would really appreciate if somebody can tell my why this is the case. My setup: I have a

[LARTC] bridge question (+homepna)

2002-04-21 Thread Bill Williamson
Okay, right now I have: (this may be really bad ascii) dsl |(eth0) router |(eth1) ---hub--- /\ hpnabridge ethernet hub | | | | | | computers computers (hpna cards)(ethernet cards) I have hpna drivers working great for linux, s