Re: newbie advice question - pf in front of multiple comps...

2004-12-01 Thread Jason Dixon
On Dec 1, 2004, at 11:43 AM, b h wrote: okay, ignore most of my question - I'm sorry I didn't figure this before posting (another recent msg on misc got me to look at this) - looks like binat is what I want. Your original message said the protected servers would have publicly routable addresses, h

Re: newbie advice question - pf in front of multiple comps...

2004-12-01 Thread mzozd
Hello Bob, a good place to start, imo, is https://solarflux.org/pf/ There you can find a lot of examples regarding pf. You can use them as a template and then customize it to your own needs. Another good reference is the PF guide at: http://www.openbsd.org/faq/pf/index.html There are a lot of

Re: newbie advice question - pf in front of multiple comps...

2004-12-01 Thread Michael H. Semcheski
Jason Dixon wrote: however, someone at my work wants me to install a firewall at a colo site - in front of say, six machines, all with public internet routable addresses... You want a bridge. It operates at layer 2, so there's no translation occurring. About one year ago I set up a bridge in a s

Fwd: newbie advice question - pf in front of multiple comps...

2004-12-01 Thread b h
--- b h <[EMAIL PROTECTED]> wrote: > Hi, > > I'm sorry for the newbie advice question. > > I've ran OpenBSD for a couple years, and pf as well, > performing straight forward NAT, rdr, etc all > with the firewall having one public internet > routable > address, and multiple machines behind

Re: newbie advice question - pf in front of multiple comps...

2004-12-01 Thread b h
--- Jason Dixon <[EMAIL PROTECTED]> wrote: > On Dec 1, 2004, at 10:59 AM, b h wrote: > > > however, someone at my work wants me to install a > > firewall at a colo site - in front of say, six > > machines, all with public internet routable > > addresses... > > > > so - I know this is likely a re

Re: newbie advice question - pf in front of multiple comps...

2004-12-01 Thread Jason Dixon
On Dec 1, 2004, at 10:59 AM, b h wrote: however, someone at my work wants me to install a firewall at a colo site - in front of say, six machines, all with public internet routable addresses... so - I know this is likely a really stupid question, but how do I manage this? does the firewall have a

newbie advice question - pf in front of multiple comps...

2004-12-01 Thread b h
Hi, I'm sorry for the newbie advice question. I've ran OpenBSD for a couple years, and pf as well, performing straight forward NAT, rdr, etc all with the firewall having one public internet routable address, and multiple machines behind with private addresses.. however, someone at my work