Firewall Wizards mailing list archives

NAT with multiple addresses.


From: Marcelo Coronel <marchu.geo () yahoo com>
Date: Sat, 15 Sep 2001 12:21:01 -0700 (PDT)

I am trying to install a firewall in an extremely
weird network connection to the Internet, and I was
wondering if there was someone willing to help me out.



Proxy Server ------------ Router --- Internet
Workstations |


As it seems, some time ago, people just came and
plugged the router to the hubs in order to avoid
performing configuration tasks in a Linux box. All the
workstations and the proxy server (which is serving
only as an HTTP proxy server) are coming out on public
addresses. 

I am planning to things this way:

Workstations---- Proxy Server --- Router

which semms a sound way to do it, as the router
belongs to a third party and I don't have access to
it. The problem is we're talking about a Cyberbar, and
as we all know, usual activity on cyberbars are IRC
chatting, web surfing and FTP downloading (I say
downloading because people browsing an FTP is not
something you see a lot of here, and when they
download they just follow a hyperlink on a webpage,
which you can do in active mode even blocking syns at
the gateway). For all I know, changing all public
addresses to private is a good thing, but having
twenty five connections from the same IP is something
an IRC server administrator will not want. 

Coming down to the real question... Is there a way to
do NAT or Masquerading at the Linux box that will let
me use all the public IP addresses I have available.

Thanks a lot for your help,

Marcelo.












__________________________________________________
Terrorist Attacks on U.S. - How can you help?
Donate cash, emergency relief information
http://dailynews.yahoo.com/fc/US/Emergency_Information/
_______________________________________________
firewall-wizards mailing list
firewall-wizards () nfr com
http://list.nfr.com/mailman/listinfo/firewall-wizards


Current thread: