On Wed, Jan 01, 2020 at 01:00:13PM +0100, Witold Tosta wrote:
Or is it possible to set up this homehub as a transparent bridge? Without
routing and firewalling functions.
I meant full transparent mode for this homehub device. Not even DMZ
mode, where all the traffic coming to a given port is forwarded further
1: 1 to the same ports behind it. I used to have an ADSL modem that
could work in two modes. First: a DMZ router that worked like the DMZ
mode above. And the transparent bridge modem mode, which was invisible
to the user. As a result, the Internet IP address was already seen on
the linux shorewall router interface. Also, the attacker was not able to
reprogram the ADSL modem, because he did not see the IP address of this
device at all. Maybe your homehub is able to be set up in a similar way.
Then you will rule out the weakness of this device's security and you
will be able to control traffic through the shorewall firewall.
Best regards.
Witek
_______________________________________________
Shorewall-users mailing list
Shorewall-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/shorewall-users