Linux Netfilter discussions
 help / color / mirror / Atom feed
From: "ml@bortal.de" <ml@bortal.de>
To: netfilter@vger.kernel.org
Subject: Firewall br0
Date: Wed, 10 Oct 2007 11:22:32 +0200	[thread overview]
Message-ID: <470C99D8.1030109@bortal.de> (raw)

Hello List,

i have a linux box with 3 interfaces.
- Internet
- 2nd Company Network
- Internal Network

Physically it looks like this:
--------------------------------
ppp0 (Internet), eth0 (plugged into DSL Modem)
eth1 (External-Network, 10.10.10.1/24)
eth2 (Internal-Network, 10.10.10.2/24)

I thought of setting up a bridge with eth1 and eth2, which would "merge" 
the two networks together and i would get br0.

Now I have the problem that I still want to firewall eth1 and eth2!
E.g. I only want to allow traffic going to 10.10.10.100-200 (on serveral 
ports) to leave interface eth1.

Can someone point me to the right place for more infos or examples?

Thanks, Mario




             reply	other threads:[~2007-10-10  9:22 UTC|newest]

Thread overview: 2+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2007-10-10  9:22 ml [this message]
2007-10-10 10:24 ` Firewall br0 Gáspár Lajos

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=470C99D8.1030109@bortal.de \
    --to=ml@bortal.de \
    --cc=netfilter@vger.kernel.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox