Linux Netfilter discussions
 help / color / mirror / Atom feed
* Firewall br0
@ 2007-10-10  9:22 ml
  2007-10-10 10:24 ` Gáspár Lajos
  0 siblings, 1 reply; 2+ messages in thread
From: ml @ 2007-10-10  9:22 UTC (permalink / raw)
  To: netfilter

Hello List,

i have a linux box with 3 interfaces.
- Internet
- 2nd Company Network
- Internal Network

Physically it looks like this:
--------------------------------
ppp0 (Internet), eth0 (plugged into DSL Modem)
eth1 (External-Network, 10.10.10.1/24)
eth2 (Internal-Network, 10.10.10.2/24)

I thought of setting up a bridge with eth1 and eth2, which would "merge" 
the two networks together and i would get br0.

Now I have the problem that I still want to firewall eth1 and eth2!
E.g. I only want to allow traffic going to 10.10.10.100-200 (on serveral 
ports) to leave interface eth1.

Can someone point me to the right place for more infos or examples?

Thanks, Mario




^ permalink raw reply	[flat|nested] 2+ messages in thread

* Re: Firewall br0
  2007-10-10  9:22 Firewall br0 ml
@ 2007-10-10 10:24 ` Gáspár Lajos
  0 siblings, 0 replies; 2+ messages in thread
From: Gáspár Lajos @ 2007-10-10 10:24 UTC (permalink / raw)
  To: ml@bortal.de; +Cc: netfilter

ml@bortal.de írta:
> Hello List,
>
> i have a linux box with 3 interfaces.
> - Internet
> - 2nd Company Network
> - Internal Network
>
> Physically it looks like this:
> --------------------------------
> ppp0 (Internet), eth0 (plugged into DSL Modem)
> eth1 (External-Network, 10.10.10.1/24)
> eth2 (Internal-Network, 10.10.10.2/24)
>
> I thought of setting up a bridge with eth1 and eth2, which would 
> "merge" the two networks together and i would get br0.
>
> Now I have the problem that I still want to firewall eth1 and eth2!
> E.g. I only want to allow traffic going to 10.10.10.100-200 (on 
> serveral ports) to leave interface eth1.
>
> Can someone point me to the right place for more infos or examples?
Check the physdev match...

Swifty
>
> Thanks, Mario
>


^ permalink raw reply	[flat|nested] 2+ messages in thread

end of thread, other threads:[~2007-10-10 10:24 UTC | newest]

Thread overview: 2+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2007-10-10  9:22 Firewall br0 ml
2007-10-10 10:24 ` Gáspár Lajos

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox