On 2010-11-19 9:56 AM, "Richard Amerman" <fi...@7technw.com> wrote: > I do this all the time and using a separate nic is simpler and easier to > manage than an alias. Unless I am missing something, a vlan for this case is > overkill.
I discussed this with the m0n0wall list back in '07 where cmb and others essentially said that it's a bad idea to run 2 subnets on a physical network, mostly for security reasons, I think. Given the option I would do the vlan thing, just for the added layer separating the hostile users from my stuff. db