Alberto Sierra wrote:> hi guys, i got a firewall working fine with 2
> interfaces and 2 zones (lan, wan) we''re hooking up a
> couple of remote offices via point-to-point (they go
> in thru a router on the lan so they don''t pass the
> firewall) with different network address (say, local
> network is 192.168.0.0/24, remote 1 is 192.168.1.0/24
> and remote 2 is 192.168.2.0/24) so the question is,
> should i create parallel zones or subzones in my
> shorewall config or can i just add them to the rules
> like "lan:192.168.1.0/24" and create a route rule or
> ip rule on the sistem to send the packet back to the
> router on the lan? (i guess i need "routeback" on the
> lan interface too, right?)
Please see http://www.shorewall.net/Multiple_Zones.html
-Tom
--
Tom Eastep \ Nothing is foolproof to a sufficiently talented fool
Shoreline, \ http://shorewall.net
Washington USA \ teastep@shorewall.net
PGP Public Key \ https://lists.shorewall.net/teastep.pgp.key
-------------------------------------------------------------------------
Take Surveys. Earn Cash. Influence the Future of IT
Join SourceForge.net''s Techsay panel and you''ll get the chance
to share your
opinions on IT & business topics through brief surveys - and earn cash
http://www.techsay.com/default.php?page=join.php&p=sourceforge&CID=DEVDEV