I have read and re-read shorewall setup instructions and I am still
unsure whether proxyarp or one-one-nat is the path to take.  If it makes
a difference, there are plans to add VPN.  

Appreciate a nudge into the right direction.

Description of environment:

Net---(8 IpAddresses)>Firewall/Router(2 IPAddresses and 3 NICs)
Firewall/Router-->(NIC 1 External IP)      
Firewall/Router-->(NIC 2 (Loc) Private IP (10.10.10.1))-->Loc HUB
Firewall/Router-->(NIC 3 (DMZ) Private IP (10.10.11.1))-->DMZ HUB
DMZ1---(NIC 1 (Loc) Private IP (10.10.10.2)
DMZ1---(NIC 2 (DMZ) Private IP (10.10.11.2) DNS Server (1 External IP))
DMZ2---(NIC 1 (Loc) Private IP (10.10.10.3) 
DMZ2---(NIC 2 (DMZ) Private IP (10.10.11.3) DNS Server/Inbound Mail
Server (2 External IPs))
DMZ3---(NIC 1 (Loc) Private IP (10.10.10.4)
DMZ3---(NIC 2 (DMZ) Private IP (10.10.11.4) DNS Server/Outbound Mail
Server (2 External IPs))
LOC1---(NIC 1 Private IP (10.10.10.5) OSSEC Server
LOC2---(NIC 1 Private IP (10.10.10.6) ACID Web Interface
LOC3---(NIC 1 Private IP (10.10.10.7) Bacula

Thanks


------------------------------------------------------------------------------
Beautiful is writing same markup. Internet Explorer 9 supports
standards for HTML5, CSS3, SVG 1.1,  ECMAScript5, and DOM L2 & L3.
Spend less time writing and  rewriting code and more time creating great
experiences on the web. Be a part of the beta today.
http://p.sf.net/sfu/beautyoftheweb
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to