Günter Michaeller
2003-Jun-19 08:38 UTC
[Shorewall-users] Using Subnet of Zone net in Zone loc?
Hi all, I?ve the following scenario I?ve an IP-range wit 32 addresses in zone net and I splitted it into 3 subnets, subnet1 with the first 16, subnet2 with second 8, and subnet3 with the last 8! In zone loc I use net 192.168.50.0/24 with address 192.168.50.1 on eth1 and masq with address on subnet1! Eth1 is directly connected to a switch. Now I want to use subnet3 and 192.168.50.x addresses for hosts connected to eth1 via the switch! I?ve no clue how to solve my problem!! I thought Proxy-arp-subnet is the right way to get it running . but it wasn?t! Thanks I advance f?r any idea! Mit freundlichen Gr??en G?nter Michaeller print data A-2700 Wiener Neustadt, Schrattensteingasse 28/42 Tel.: +43 664/1035949 Fax: +43 2622/26448-4 email: g.michaeller@print-data.at <mailto:w.schnelzer@print-data.at> www: www.print-data.at
On Wed, 2003-06-18 at 04:11, G?nter Michaeller wrote:> > I?ve no clue how to solve my problem!! > I thought Proxy-arp-subnet is the right way to get it running ??. but > it wasn?t! >You want static NAT -- see http://www.shorewall.net/shorewall_setup_guide.htm. That guide shows you how to masquerade some systems in the local zone while masquerading others. I use the same scheme myself which you can see at http://www.shorewall.net/myfiles.htm. -Tom -- Tom Eastep \ Shorewall - iptables made easy Shoreline, \ http://www.shorewall.net Washington USA \ teastep@shorewall.net
Günter Michaeller
2003-Jul-01 02:33 UTC
AW: [Shorewall-users] Using Subnet of Zone net in Zone loc?
Hi, I read a lot of docs, and here is what I really want to do! I want to use Proxy ARP Subnetworking and Masquerading! Masqueraded machines connected to eth1 and Proxy-arped subnet connected to Wireless Bridges in masqueraded Network on eth1! How can I get that runnin?? Thanks in advance! Mit freundlichen Gr??en G?nter Michaeller print data A-2700 Wiener Neustadt, Schrattensteingasse 28/42 Tel.: +43 664/1035949? Fax: +43 2622/26448-4 email: g.michaeller@print-data.at www: www.print-data.at -----Urspr?ngliche Nachricht----- Von: Tom Eastep [mailto:teastep@shorewall.net] Gesendet: Donnerstag, 19. Juni 2003 18:26 An: G?nter Michaeller Cc: shorewall-users@lists.shorewall.net Betreff: Re: [Shorewall-users] Using Subnet of Zone net in Zone loc? On Wed, 2003-06-18 at 04:11, G?nter Michaeller wrote:> > I?ve no clue how to solve my problem!! > I thought Proxy-arp-subnet is the right way to get it running. but> it wasn?t! >You want static NAT -- see http://www.shorewall.net/shorewall_setup_guide.htm. That guide shows you how to masquerade some systems in the local zone while masquerading others. I use the same scheme myself which you can see at http://www.shorewall.net/myfiles.htm. -Tom -- Tom Eastep \ Shorewall - iptables made easy Shoreline, \ http://www.shorewall.net Washington USA \ teastep@shorewall.net
Tom Eastep
2003-Jul-01 09:42 UTC
AW: [Shorewall-users] Using Subnet of Zone net in Zone loc?
On Tue, 2003-07-01 at 02:33, G?nter Michaeller wrote:> Hi, > > I read a lot of docs, and here is what I really want to do! > > I want to use Proxy ARP Subnetworking and Masquerading! Masqueraded > machines connected to eth1 and Proxy-arped subnet connected to Wireless > Bridges in masqueraded Network on eth1! > > How can I get that runnin?? >With great difficulty. -Tom -- Tom Eastep \ Shorewall - iptables made easy Shoreline, \ http://www.shorewall.net Washington USA \ teastep@shorewall.net
Tom Eastep
2003-Jul-01 09:48 UTC
AW: [Shorewall-users] Using Subnet of Zone net in Zone loc?
On Tue, 2003-07-01 at 09:42, Tom Eastep wrote:> > With great difficulty.Some time ago, I managed to get *one* system in a masqueraded subnet to use PROXY ARP (the host had two IP addresses - one public and one private). The complexity wasn''t worth the effort (and I''ve also forgotten most of what I had to do to get it to work). -Tom -- Tom Eastep \ Shorewall - iptables made easy Shoreline, \ http://www.shorewall.net Washington USA \ teastep@shorewall.net