On Apr 27, 2009, at 5:07 PM, John Novack wrote:

> May I assume this firewall module is not usable with boards that  
> only have a single Ethernet port?
>
>
> John Novack

Basically, yes 2+ interfaces are required.

The devel's had talked about installing a dummy interface to always  
allow firewall and dnsmasq features, even with single interface  
boards, but I'm not aware of any progress on that front.

A possible option (thought I haven't tried it) would be to enable a  
vlan on your single ethernet interface, ie. use eth0 (untagged) for  
the external interface and eth0.10 (tagged) for the internal  
interface, BUT be very careful that your upstream switch is properly  
configured, so as the VLAN 10 is ignored (or accepted to other VLAN 10  
ports).

vlans are cool.

Lonnie


------------------------------------------------------------------------------
Register Now & Save for Velocity, the Web Performance & Operations 
Conference from O'Reilly Media. Velocity features a full day of 
expert-led, hands-on workshops and two days of sessions from industry 
leaders in dedicated Performance & Operations tracks. Use code vel09scf 
and Save an extra 15% before 5/3. http://p.sf.net/sfu/velocityconf
_______________________________________________
Astlinux-users mailing list
Astlinux-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/astlinux-users

Donations to support AstLinux are graciously accepted via PayPal to 
pay...@krisk.org.

Reply via email to