Shorewall 4.x

If a firewall has its interfaces statically configured and does not run 
a DHCP server itself, but there is a DHCP server in the dmz zone to 
provide machines of the loc zone with TCP/IP configurations, on what 
interfaces must the  dhcp   option in the Interfaces file be specified?

According to the manual
  dhcp   Specify this option when any of the following are true:
         1.  the interface gets its IP address via DHCP
         2.  the interface is used by a DHCP server running on the
             firewall
         3.  you have a static IP but are on a  LAN  segment  with
             lots of DHCP clients.
         4.  the  interface  is a bridge with a DHCP server on one
             port and DHCP clients on another port.

1. does not apply to any of the interfaces.

2. does not apply.

3. seems to apply to the interface for the loc zone, (shouldn't
'you have' not better be rephrased as 'the interface has')

4. does this apply to my situation?

What is meant here by 'port' (TCP/UDP port number ?) 
How to interpret the word 'bridge'. Is it just in the general meaning 
of a 'path' (from the DHCP server in dmz zone to the machines
in the loc zone) or in a restricted network-technology term of bridge?

-------------------------------------------------------------------------
This SF.net email is sponsored by: Microsoft
Defy all challenges. Microsoft(R) Visual Studio 2008.
http://clk.atdmt.com/MRT/go/vse0120000070mrt/direct/01/
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to