On Thu, 25 Oct 2001, Michael T. Babcock wrote:

|I want to use the bridging code to create an IP-less machine to operate 
|a DMZ like in the diagram below:
|
|[ Internet ] -> eth0 ... Bridge ... eth1 <- [ DMZ Firewall <-> DMZ Switch ]
|                           |
|                           \- eth2 <- [ Internal Network Firewall, Switch ]
|
|What I don't want is for eth0 and eth2 to be bridged, but I do want 
|eth1 (DMZ) and eth2 (Internal network) bridged with their firewalls 
|handling packet filtering.
|
|Is there any way to bridge eth0<->eth1 and eth2<->eth1 without 
|eth0<->eth2?

Why don't you just use a router? From what you've told us, there is no
reason (as far as I can see) that you would need a bridge.

Have you tried creating two bridges (brctl addbr br0; brcrl addbr br1) and
assigning eth0 to both bridges? I haven't tried this myself. Perhaps some
VLAN capability is required to do this. 

Cameron Kerr
-- 
[EMAIL PROTECTED]
http://homepages.paradise.net.nz/~cameronk/


_______________________________________________
Bridge mailing list
[EMAIL PROTECTED]
http://www.math.leidenuniv.nl/mailman/listinfo/bridge

Reply via email to