On 12/18/18 12:01 PM, Erich Titl wrote:
> Hi
> 
> I have a shorewall configuration where on the internal interface I set
> up several vlans which are represented to shorewall as zones loc1 to locn.
> 
> Now all these zones are masqueraded towards the net using entries in
> SNAT. So far so good.
> 
> Zone loc1 serves as something like a master or administrative zone and I
> would like to access Wifi APs in the zones loc(!1) from loc1 using
> http(s). Some of the Wifi equipment appears to only accept traffic from
> the local network for administration, so I would like to masquerade
> traffic from loc1 to locx so it appears that the traffic comes from the
> local zone.
> 
> Any ideas
> 

        MASQUERADE      <net1>  ethx.2
        MASQUERADE      <net1>  ethx.3
        MASQUERADE      <net1>  ethx.4
        ...

where
        <net1> is the subnet associated with loc1
        ethx.n is the interface to locn

-Tom
-- 
Tom Eastep        \   Q: What do you get when you cross a mobster with
Shoreline,         \     an international standard?
Washington, USA     \ A: Someone who makes you an offer you can't
http://shorewall.org \   understand
                      \_______________________________________________

Attachment: signature.asc
Description: OpenPGP digital signature

_______________________________________________
Shorewall-users mailing list
Shorewall-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to