Shorewall Guy skrev: > Lars Erik Dangvard Jensen wrote: >> Hello list >> >> eth0 is the public interface and eth1 is supposed to be connected to a >> private lan using proxy arp and nat. >> >> Is it possible to use eth1 with both proxy arp and nat, or will this >> cause problems? >> >> I have proxy arp and nat working on another shorewall, but that's with 4 >> interfaces (separate proxy arp and nat interfaces). > > Should work fine.
Ok, the zones dmz1 (NAT) and dmz2 (Proxy ARP) obviously can't be on the same interface unless using parallel or nested zones. Can a the proxy arp zone be a nested zone of the nat zone? Or do I have to use parallel zones? Thanks. /Lars ------------------------------------------------------------------------------ _______________________________________________ Shorewall-users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/shorewall-users
