* Firewall br0
@ 2007-10-10 9:22 ml
2007-10-10 10:24 ` Gáspár Lajos
0 siblings, 1 reply; 2+ messages in thread
From: ml @ 2007-10-10 9:22 UTC (permalink / raw)
To: netfilter
Hello List,
i have a linux box with 3 interfaces.
- Internet
- 2nd Company Network
- Internal Network
Physically it looks like this:
--------------------------------
ppp0 (Internet), eth0 (plugged into DSL Modem)
eth1 (External-Network, 10.10.10.1/24)
eth2 (Internal-Network, 10.10.10.2/24)
I thought of setting up a bridge with eth1 and eth2, which would "merge"
the two networks together and i would get br0.
Now I have the problem that I still want to firewall eth1 and eth2!
E.g. I only want to allow traffic going to 10.10.10.100-200 (on serveral
ports) to leave interface eth1.
Can someone point me to the right place for more infos or examples?
Thanks, Mario
^ permalink raw reply [flat|nested] 2+ messages in thread
* Re: Firewall br0
2007-10-10 9:22 Firewall br0 ml
@ 2007-10-10 10:24 ` Gáspár Lajos
0 siblings, 0 replies; 2+ messages in thread
From: Gáspár Lajos @ 2007-10-10 10:24 UTC (permalink / raw)
To: ml@bortal.de; +Cc: netfilter
ml@bortal.de írta:
> Hello List,
>
> i have a linux box with 3 interfaces.
> - Internet
> - 2nd Company Network
> - Internal Network
>
> Physically it looks like this:
> --------------------------------
> ppp0 (Internet), eth0 (plugged into DSL Modem)
> eth1 (External-Network, 10.10.10.1/24)
> eth2 (Internal-Network, 10.10.10.2/24)
>
> I thought of setting up a bridge with eth1 and eth2, which would
> "merge" the two networks together and i would get br0.
>
> Now I have the problem that I still want to firewall eth1 and eth2!
> E.g. I only want to allow traffic going to 10.10.10.100-200 (on
> serveral ports) to leave interface eth1.
>
> Can someone point me to the right place for more infos or examples?
Check the physdev match...
Swifty
>
> Thanks, Mario
>
^ permalink raw reply [flat|nested] 2+ messages in thread
end of thread, other threads:[~2007-10-10 10:24 UTC | newest]
Thread overview: 2+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2007-10-10 9:22 Firewall br0 ml
2007-10-10 10:24 ` Gáspár Lajos
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox