/* HINT: Search archives @ http://www.indyramp.com/masq/ before posting! 
/* ALSO: Don't quote this header. It makes you look lame :-) */


        I have a strange problemn and would really apreciate Help.

I've got a range of public adresses coming from my isp let's say
123.234.123.160/28
I need to have a masqued network and a DMZ on the same fw.
Here's a schema.


       INTERNET

          |
          |

    ISP's  ROUTER

          |
     eth0 |
  +-------+---------+
  |                       |
  |                 | eth1
  |                 +----------------------
  |                 | 123.234.123.160/28
  | 192.168.1.254   |
  +-------+---------+
     eth2 |
          |
          |

When we set up the router with my ISP they suggested (if I don't want to
loose any adresses of the range of ip)
to have private adressing between them and me (eth0).
The result is that the fw can't get out to the world, because their router
only route paquets coming from 123.234.123.160/28.

The machines with 123.234.123.161->174 works fine...but the network is
masqued as coming from the fw's IP next to the router, and they don't access
the world.

On my mind, if those machines seems to come from 123.234.123.16x (an ip that
we would reserve), it would work.

For the moment, we've been obliged to divide the range of adresses :
123.234.123.160/30 btw the ISP's router and Fw and 174/28 for the DMZ, the
local network is masqued as 123.234.123.161 and everithing's OK, but we've
lost a part of our rang of ip....

Thanks for help

Sebastien JALLOT
Network and system Consultant

_______________________________________________
Masq maillist  -  [EMAIL PROTECTED]
Admin requests can be handled at http://www.indyramp.com/masq-list/ -- 
THIS INCLUDES UNSUBSCRIBING!
or email to [EMAIL PROTECTED]

PLEASE read the HOWTO and search the archives before posting.
You can start your search at http://www.indyramp.com/masq/
Please keep general linux/unix/pc/internet questions off the list.

Reply via email to