Firewall Help

Mike Starke plug-discuss@lists.plug.phoenix.az.us
Wed, 18 Sep 2002 23:53:00 -0500


Couldn't you just alias the IP's and adjust your script (ipchains/tables)
accordingly?

'ifconfig eth0:1 <second_ip> netmask <same_netmask>'
'ifconfig eth0:2 <third_ip> netmask <same_netmask>'
etc


v/r
Mike

On Wed, Sep 18, 2002 at 08:32:02PM -0700, Brian Tafoya wrote:
 www.clarkconnecto.org has a super hardened Redhat firewall distro with a
 web based GUI that does just what you need... port forwarding,
 monitoring, etc. Free too! ;)
 
 -----
 Brian Tafoya
 http://briantafoya.com
 me@briantafoya.com
 
 -----Original Message-----
 From: plug-discuss-admin@lists.plug.phoenix.az.us
 [mailto:plug-discuss-admin@lists.plug.phoenix.az.us] On Behalf Of Justin
 Wilson
 Sent: Wednesday, September 18, 2002 6:13 PM
 To: plug-discuss@lists.plug.phoenix.az.us; azipa@yahoogroups.com
 Subject: Firewall Help
 
 I am hoping that someone might be able to help me help someone else. 
 
 I am trying to help a friend out who has a small network that he runs
 services off of, do to the way he needs his Webservers to access his
 Database, he needs a direct connection to the DB server, so he cannot
 put his webserver outside his main firewall. So I suggested that he
 place his Webserver inside his firewall and run port forwarding to the
 webserver, his DNS servers, mail server, and two windows boxes that he
 is running VNC on. 
 
 Well the one problem he has is that he has multiple IPs that he is using
 for his various servers. All the sample firewall scripts and Howto's
 that I can find are for implementing port forwarding are with a single
 IP on the firewall and forwarding the various ports on that IP to the
 other boxes. So therefore the problem that I have is with the DNS
 servers and the VNC systems, they require the same port, so I want to
 run multiple IPs on a single NIC on the firewall and forward the ports
 from specific IPs to the various boxes that are running the needed
 services.
 
 Is this the way to do this or is there a better way, and if it is the
 way to do it where can I get an example or a Howto?
 
 -Justin
 justin@bigcity.nu
 
 -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-
 PLUG-discuss mailing list - PLUG-discuss@lists.plug.phoenix.az.us
 To subscribe, unsubscribe, or to change  you mail settings:
 http://lists.PLUG.phoenix.az.us/mailman/listinfo/plug-discuss
 
 
 -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-
 PLUG-discuss mailing list - PLUG-discuss@lists.plug.phoenix.az.us
 To subscribe, unsubscribe, or to change  you mail settings:
 http://lists.PLUG.phoenix.az.us/mailman/listinfo/plug-discuss