Displaying 20 results from an estimated 500 matches similar to: "ProxyARP in a Routed environment"
2005 Apr 07
4
Shorewall in a Routed network
Hi,
 
        In a routed network environment, without the router , we want to use the shorewall as the firewall/router. The ISP has assigned the following set of IP addresses. 
 
WAN IP for subnet 1 (DATA)
 
220.227.202.X/30 ( to be assigned to eth0 of the shorewall)
 
WAN IP for subnet 2 (Voice)
220.227.202.Y/30  ( to be assigned to eth1 of the shorewall)
 
Addresses assigned for Subnet 1 by
2005 Apr 10
1
FW: ProxyARP in a Routed environment
Tom,
Is not this query worth answering?
-Siva
-----Original Message-----
From: Sivamurugu K. Pillai 
Sent: Friday, April 08, 2005 3:14 PM
To: ''Mailing List for Shorewall Users''
Subject: ProxyARP in a Routed environment
Hi,
	In a routed network setup , is it possible to use ProxyARP given the condition that the shorewall 
external interface and the DMZ interface are in a
2006 Jun 02
2
ProxyArp
Hi-
	One last question for the week, I promise.
I''ve got one IP ProxyArp''d according to the instructions at
http://www.shorewall.net/ProxyARP.htm.  I''ve setup the
shorewall/proxyarp file as follows:
#ADDRESS        INTERFACE       EXTERNAL        HAVEROUTE
PERSISTENT
208.4.145.73    br0             eth1            no              yes
#LAST LINE -- ADD YOUR ENTRIES
2003 Feb 22
4
Shorewall with ProxyARP
Hi,
    Thanks for your reply . I am attaching the files needed by you 
herewith.   The NAT device is called Pronto gateway which has two 
interfaces , namely eth0 and eth1. ''eth0'' has an ip address of 
203.124.152.66 and eth1 has an ip address of 192.168.1.3 . All the 
client PCs are in 192.168.1.0 network [behind the NAT, the Pronto 
gateway] and use 192.168.1.3 as the default
2005 Jul 27
2
Accounting Proxyarp users !!?
Hi Folks,
Can i account proxyarped pc´s ??
Like know how much web traffic passthru a specific person ip using shorewall ?
So i can know how much bandwidth that specific IP EAT ?
Thanks alot
Carlos Arnt
-------------------------------------------------------
SF.Net email is sponsored by: Discover Easy Linux Migration Strategies
from IBM. Find simple to follow Roadmaps, straightforward
2004 Oct 09
2
odd problem with proxyarp and DNAT
I have some hosts in a DMZ zone with proxyarp. In my local zone I have a host to which I DNAT.
I have discovered that I can reach the host in the local zone by attempting to connect to the fw (As expected) or ANY proxyarped host in my dmz zone (as not expected). Is this normal ?
 
(I''ve just discovered that actually the dnated host answers to requests sent to any IP routed to my host!)
 
2006 Apr 08
4
New UPS protocol choice - Dynamix
Gidday all - I'm a new user to nut.
I've got some cheap powerpal UPSs working fairly well.
However I also have a new Dynamix UPS-1700D and an old Powercom KIN-1700
something unit that I cannot make work right.
The best method I've found is "trial and error" which sounds a bit
last-resort.  Is there any better way to find out what protocol is used?
-- 
Criggie
2008 Jan 31
11
ZenTest-3.9.0 incompatible with RSpec-1.1.2
Hey all,
Just a heads up that the ZenTest-3.9.0 release is not compatible with
RSpec-1.1.2. I thought I had a release ready to go, but differences
between a preview release of ZenTest that I received and the actual
release seem to have broken compatibility.
We''ll get this resolved soon, but in the mean time please hold off on
upgrading to ZenTest-3.9.0 if you''re using RSpec.
2005 May 05
1
Ping Requests issue
Tom,
	I use shorewall 2.2.3 with four network interfaces comprising of three zones. 
I am able to ping some servers from the internet(net-zone) and not others. 
I do not want to allow ping by default from internet. I have not copied the files action.drop 
and action.reject into /etc/shorewall. Nor I have a AllowPing rule in rules file.
The policy file is pasted below.
#SOURCE		DEST		POLICY	
2010 Sep 11
2
Dynamix 650 VA USB UPS
Hi,
Has anyone had success with the Dynamix 650VA, that uses the USB cable?
I can't get megatec_usb to recognize it, I have tried both stable and
development versions.
Regards
Glen Ogilvie
2006 Apr 17
7
Serve static XML files how?
Hi,
a Javascript in one of my Rails templates needs to load a static XML
file. I tried several places to put the actual XML file, and I also
tried to make the file a rails template (tried both .rhtml and .rxml)
and access it via a controller action. None of these ways worked. Does
the lighttpd server know how to serve XML files, or do I need to
configure it first? Or, is there a good workaround?
2003 Oct 19
2
Reg. Proxyarp & DHCP
My ISP has DHCP-assigned IP-addresses.
I wonder if someone has tried using proxyarp
for a DMZ with DHCP-assigned public IP?
2005 Jan 18
1
proxyarp and masq ip
Would it be considered normal that a system behind a shorewall box that
was setup for proxyarp and able to be reached from the trusted side of
the net just fine on the proxyapr ip address would if it were to talk
out to the world show as traffic not from the proxyarp address but the
firewall''s own address or the masquerading ip used by other zones? We
had not really noticed this as an
2006 Feb 07
0
proxyarp <--> OpenSwan VPN/Internet
Our VPN runs for 3 months very well with a minimum of traffic <100 kbit/s.
Only DNS Zones and nagios passive checks were transferred. Everything seems
to work.
Left side is  x.x.x.14 (host 1)
Subnet 10.0.0.0/24
openswan 2.4.4
shorewall 2.4.2 & iptables 1.3.4
gentoo 2.6.12-r9 with policy match
It´s reachable through a proxyarp entry on x.x.x.11 (host 2) which is
another gentoo 2.6.12-r9
2004 Oct 28
5
Maximum ProxyArp
Does anyone know what a good maximum number of machines I should place
in the ProxyArp list?
Thanks
Jamie
2005 Jan 28
1
proxyarp problem
shorewall-users
hi,ALL
  
 I have a firewall have three interface, one NIC is internal (eth0),
 second NIC is SSN(eth2), and other NIC is external(eth1),
  
 on internal network have 10.0.1.59 and gw 10.0.1.163
 eth0: 192.168.1.254/24
 eth1: 10.0.1.55/24 gw 10.0.1.163
  
 I use shorewall''s proxyarp
 10.0.1.59  eth1  eth0 no no
  
 that is OK.
  
 I saw /usr/share/shorewall/firewall, I
2005 Jan 05
2
proxyarp IP problem after squid installed.
Hello All,
 
I am using shorewall 2.0.7. first i give you my config here and will tell you my problem.
 
ProxyARP:
203.77.204.85   eth1            eth0            no
 
Interface: 
 net    eth0            203.77.204.87
 loc    eth1            192.168.0.255   routeback
 
Masq :
eth0                   192.168.0.0/24  203.77.204.86
 
Rules:
# Squid access
REDIRECT loc           8080            tcp    
2006 Feb 07
0
WG: AW: WG: proxyarp <--> OpenSwan VPN/Internet
I´ve figured out the following. 
I am able to sftp from shorewall 2.4.2 left vpn gateway x.x.x.14 (DMZ) to
shorewall 2.4.1 fw x.x.x.11 with /etc/shorewall/proxyarp
x.x.x.14   eth2            eth0            No
very well. That´s not through a tunnel (of course a ssh tunnel, but no vpn)
but with public ip x.x.x.14 to x.x.x.11
If I try to sftp through the fw to the public internet I have the same
2004 Nov 04
2
nat ,dnat or proxyarp with heartbeat
Hi , I have a dude.
 
I have four nic. Lan, wan, dmz1 and dmz2.
 
I use proxy arp for dmz1 and work great. But in dmz2 have 2 machine with heartbeat. IP are type 192.168.x.x
 
If use nat work fine from wan to dmz2, but from lan ?? how to access valid ip ??
 
 
 
Sorry for my bad english :)
2004 Sep 10
1
RE: Is ProxyARP or NAT entries really neccesary forDNAT to work?
I forgot to include my masq file. It''s pretty straightforward:
eth2			eth0
eth2			eth1
Cheers,
  Brian