Hi misc,

I have about 600 destinations to reach via wan1 and wan2.(  300 via wan1
and 300 via wan2 )

my /etc/mygate is *wan_gw1*


Let's say *ip_list1 and *

*ip_list2. **Let's assume /etc/ip_list1 and *


*/etc/ip_list2 have ip addresses in this format /etc/ip_list1* *(this
consists of about 300 ips)*


*66.x.x.x *



*60.x.x.0/24**/etc/ip_list2 (this also **consists of **about 300 ips)*


*62.x.x.x**66.x.x.0/16*


I am going to add below rules for achieving that task. R u guys ok with
them?

is it OK?



*block in log
pass out quick*















*table <ip_list1> persist file "/etc/ip_list1"table <ip_list2> persist file
"/etc/ip_list2" pass in on $int_if from $int_net to <ip_list1> tag ip_list1
route-to ($wan_if1 $wan_gw1)pass out quick on $dmz_if tagged ip_list1pass
in on $int_if from $int_net to <ip_list2> tag ip_list2 route-to ($wan_if2
$wan_gw2)pass out quick on $dmz_if tagged ip_list2*
-- 
cat /etc/motd

Thank you
Indunil Jayasooriya
http://www.theravadanet.net/
http://www.siyabas.lk/sinhala_how_to_install.html   -  Download Sinhala
Fonts

Reply via email to