Watanabe Anderson wrote:
> Hello,
> 
> 
> 
> I have a question.
> 
> 
> I'll configure a new Shorewall, but this time, I'll use a DSL modem with 
> PPPoE.
> 
> 1. The DSL modem is connected on eth0
> 2. I have 16 publics IPs, and need to use 6 IPs. (eth0:1 ~ eth0:6)

I think that you will just confuse yourself by assigning the IP
addresses to eth0 since no IP traffic will ever go through eth0. Why do
you want to add them to your firewall at all? Your ISP must route all of
these addresses through the PPP no matter if you add them to your
firewall or not. So there is really no point in defining them on the
firewall.

The only reason that you add additional addresses to an interface is so
that your system will respond to ARP requests for those addresses; with
PPP, there is no ARP.

> 
> After connect with PPPoE conenction , my external interface is ppp0.
> 
> How I need to configure properly my interfaces and zone files?

Simply think of those addresses as being automatically added on ppp0.
They won't be configured that way but from a Shorewall point of view,
but that doesn't matter.

eth0 does not exist at all, as far as Shorewall is concerned (unless you
have added an IP address to it to be able to access the web server in
the modem; but that's a different matter).

-Tom
-- 
Tom Eastep        \ When I die, I want to go like my Grandfather who
Shoreline,         \ died peacefully in his sleep. Not screaming like
Washington, USA     \ all of the passengers in his car
http://shorewall.net \________________________________________________

Attachment: signature.asc
Description: OpenPGP digital signature

------------------------------------------------------------------------------
OpenSolaris 2009.06 is a cutting edge operating system for enterprises 
looking to deploy the next generation of Solaris that includes the latest 
innovations from Sun and the OpenSource community. Download a copy and 
enjoy capabilities such as Networking, Storage and Virtualization. 
Go to: http://p.sf.net/sfu/opensolaris-get
_______________________________________________
Shorewall-users mailing list
Shorewall-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to