Tom Eastep wrote:
> Rich Wales wrote:
>> On October 21, Tom wrote:
>>
>>>> Turns out that Rich posted on the netfilter list and got this
>>>> reply from Patrick McHardy (Netfilter lead maintainer):
>>>>
>>>>> The macvlan driver allows you to add virtual ethernet devices
>>>>> with different mac addresses:
>>>>>
>>>>> ip link add link eth0 [ name ] type macvlan
>> Yes.  Unfortunately, though, I was not able to get it to work.  I also
>> tried using a combination of macvlan and ebtables, but I couldn't get
>> my firewall to use the second MAC address for the separate IP address.
> 
> I don't know why it shouldn't have worked for you -- I just tried it and
> had it working in less than 5 minutes, including updating my Shorewall
> config for two net interfaces.

I should add however that this is not a particularly easy feature to use
in general, which could be why Rich thought that it wasn't working. You
have to set it up MultiISP with one 'Provider' for each maclan interface
and then use policy routing to direct traffic out of a particular interface.

-Tom
-- 
Tom Eastep        \ The ultimate result of shielding men from the
Shoreline,         \ effects of folly is to fill the world with fools.
Washington, USA     \                                 -Herbert Spencer
http://shorewall.net \________________________________________________

Attachment: signature.asc
Description: OpenPGP digital signature

-------------------------------------------------------------------------
This SF.Net email is sponsored by the Moblin Your Move Developer's challenge
Build the coolest Linux based applications with Moblin SDK & win great prizes
Grand prize is a trip for two to an Open Source event anywhere in the world
http://moblin-contest.org/redirect.php?banner_id=100&url=/
_______________________________________________
Shorewall-users mailing list
Shorewall-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to