On Fri, Mar 30, 2007 at 12:30:12PM -0700, Rich Wales wrote:
> I =did= try an "arping -U" command to update the upstream router's
> ARP cache, in case that might have been the problem.

That only works if the upstream router has not been configured to
maintain a static arp cache. A number of misguided ISPs do this as
part of an attempt to inconvinience people who would like to connect
more than one device to their internet connection. (If you discover
that your ISP is doing this, I would strongly advise finding a new
ISP, as it indicates that an idiot has decision-making authority over
their network)

> If all else fails, I could physically move the external network card
> from my production firewall into the new firewall -- though, hopefully
> understandably, I'd only want to do that as a last resort.

This should not be necessary. One of the many reasons why such
upstream inanity is misguided is because you can merely change the MAC
address of your existing network card, instead of using the power-on
default.

ifconfig ethx hw ether aa:bb:cc:dd:ee:ff

-------------------------------------------------------------------------
Take Surveys. Earn Cash. Influence the Future of IT
Join SourceForge.net's Techsay panel and you'll get the chance to share your
opinions on IT & business topics through brief surveys-and earn cash
http://www.techsay.com/default.php?page=join.php&p=sourceforge&CID=DEVDEV
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to