Hi,

Can a Shorewall bridge (with firewall rules as in 
http://www.shorewall.net/bridge-Shorewall-perl.html) block DHCPD traffic?

In other words, can I have a DHCP server on one side of the bridge leasing IP 
addresses ONLY for that side and another DHCP server on the other side giving 
out IP addresses ONLY for that side?

My default policy side1<->side2 is DROP and I only open specific ports.

I'm not posting yet a "shorewall dump" because I would first like to know if 
shorewall/netfilter can actually block DHCP requests that go through a bridge. 
In fact, my setup is currently faulty in that hosts in side2 are receiving DHCP 
assigned addresses from side1.

Thanks for your help.

Vieri



      

------------------------------------------------------------------------------
Free Software Download: Index, Search & Analyze Logs and other IT data in 
Real-Time with Splunk. Collect, index and harness all the fast moving IT data 
generated by your applications, servers and devices whether physical, virtual
or in the cloud. Deliver compliance at lower cost and gain new business 
insights. http://p.sf.net/sfu/splunk-dev2dev 
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to