Firewall with two external interfaces

Firewall with two external interfaces

Post by Chri » Tue, 10 Jun 2003 20:59:50



Dear List,

I have a RedHat firewall with two external ADSL interfaces, and a single
internal interface.

I would like to use the secondary ADSL for web-browsing and the primary
ADSL for everything else; with this latter interface being the default
gateway.

I plan to use squid. Is there any way I can tell squid (I've also posted
to their user list), to go out via the non-default gateway, or should I
look at doing something with "ip route"?

Thanks,
Chris

 
 
 

Firewall with two external interfaces

Post by xchri » Tue, 10 Jun 2003 22:07:49




Quote:> I would like to use the secondary ADSL for web-browsing and the primary
> ADSL for everything else; with this latter interface being the default
> gateway.

good starting point
http://lartc.org/howto/lartc.rpdb.multiple-links.html

if you use Nat i guess it is simpler...
but you should do it also with squid.
Good luck
bye

 
 
 

1. can ping firewall external interface but not external network

I have a firewall between two networks.  I'll call one local and the other
external.  The local is on eth0 and the external is on eth1.

with ipchains flushed and all policies set to accept, from a machine on the
local net, I can ping the local interface (192.168.1.10) on the firewall,
AS WELL as the external interface (192.168.2.10) BUT I cant ping any
machines on the external network.  I can ping any machine from the firewall
though.


Kernel IP routing table

Destination Gateway Genmask Flags MSS Window irtt Iface

192.168.2.0     0.0.0.0     255.255.255.0     U     0     0     0     eth1

192.168.1.0     0.0.0.0     255.255.255.0     U     0     0     0     eth0

127.0.0.0     0.0.0.0     255.0.0.0     U     0     0     0     lo

0.0.0.0     192.168.2.254     0.0.0.0     UG     0     0     0     eth1

In the Ipchains Howto it says I shouldn't be able to ping the external
interface on the firewall, so I

echo "0" /proc/sys/net/ipv4/ip_forward

but that made no difference.

Please help.  I'm trying the get the firewall to simply forward all packets
from one net to the other (at this stage).

Regards

Gav

2. strange tripwire behaviour?

3. Problem w/ OpenBSD Firewall: External interface freezes after 1 - 3 days of uptime -- please help

4. Is there a way to *upgrade* packages?

5. Firewall with more than one External interface

6. cron log

7. Routing to two external interfaces

8. RH 6 and PCMCIA Ethernet: How to get it going after the installation?

9. Firewall: two internal machines connect to same external game

10. Port forward external to external interface

11. Port forwarding from an external interface to an external site.

12. How do masquerade and set up firewall on two network interfaces?

13. Interface-specific firewall rules with interface aliases