At 04:57 PM 1/22/2001, you wrote:
>Hello all,
>
>I'm having trouble getting ip aliasing to work.  I have tried a few 
>different kernels, 2.2.18-1 and 2.2.17pre6-1.


aliasing has worked since at least 2.2.x.... it's not broken.


>On my firewall, I have two nics, eth0 - private lan, eth1 - internet.  I 
>want to setup two private networks on eth0. Once it's setup the way I 
>think it should be, I can ping the outside world, I can ping my privat lan 
>#1, but I cannot ping lan #2. Ping reports 'operation not permitted'.

OK...have you read the IP-ALIASING-HOWTO? I'm going to guess that you don't 
have routing properly
set up between the segments. First of all, aliasing is intended to hide a 
host or network from the
rest of your lan. When you alias a network device, you a) have to set up 
some routes and b) have
to tell the other hosts about the alias or they *won't* talk.

You can alias multiple addresses on a single host/nic. The second physical
device should be setup firewall fashion. You'll have to setup forwarding 
and either physically
connect the two devices or use bridging.


>On my laptop (running 2.4) this works just fine.  I add in the alias, 
>don't even mess with the routing table, and can ping either lan.

What is the laptop connected to, a hub? Where do the cable from each nic 
go? Again, sounds like
a routing problem.

>The two private lans are on the same physical network.

I do the same at home, but I use one ethernet device and a hub. You don't 
have the complexity
and trafficking woes this way. Two network cards and some nifty rules make 
a sane firewall however.


jk
-----------------------------
James S. Kaplan KG7FU
Eugene Oregon USA
[EMAIL PROTECTED]
http://www.rio.com/~kg7fu
ICQ # 1227639
Have YOU tried Linux today?
-----------------------------


Reply via email to