From: Payal Rathod <payal-iptables@staticky.com>
To: netfilter@lists.netfilter.org
Subject: iptables with real ips
Date: Fri, 15 Aug 2003 20:49:43 +0530 [thread overview]
Message-ID: <20030815151943.GA1513@linux.local> (raw)
Hi,
First excuse for mailing a new question before commenting about previous.
It is that I get 20 mins 2 times a day net access only (dial-up).
I download all mails once and send/comment once.
Fortunately for me, a friend of mine has agreed to let me try Linux and
iptables at his office and hey I get paid $50 for it too :):):)
But their are some contraints which I want you to give opinion about.
- RH Linux 7.2 (default kernel)
- 4 real ips (thru' some router)
- all traffic should pass thru' Linux firewall
- I cannot recompile kernel and change anything other than firewall on
the box. I will be killed if I crash that box.
- One windows machine has a webserver and ftp server accessible thru'
outside world. Can I make people from outside access that box but the
traffic should pass thru' Linux box first and its firewall rules?
I think that when someone from outside asks about windows http server,
Linux box should accept it and pass to windows server. But techinically
I don't know if it possible. What should I be looking at?
- One more windows box with real ip is connecting to a machine in Europe
thru VPN. This VPN is allowed only for that windows ip. Can I make
this VPN traffic pass thru' Linux box and still it should appear as
not originating from the Linux ip but from windows ip to the remote
server?
These questions may sound stupid but I never have used more than 1 live
ip and that too only 2 times.
Thanks a lot for the time in advance and eagerly waiting for any replies
on this.
With warm regards,
-Payal
--
"Visit GNU/Linux Success Stories"
http://payal.staticky.com
Guest-Book Section Updated.
reply other threads:[~2003-08-15 15:19 UTC|newest]
Thread overview: [no followups] expand[flat|nested] mbox.gz Atom feed
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=20030815151943.GA1513@linux.local \
--to=payal-iptables@staticky.com \
--cc=netfilter@lists.netfilter.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.