virtualni dmz
Jiri B.
jiri.b at sendmail.cz
Mon Jan 3 21:58:37 CET 2005
Zdravim,
omlouvam se za podivnou otazku ale neda mi to.
Jak bychte udelali virtualni sit - dmz - uvnitr systemu na virtualnim
rozhrani tak aby slo na tom virtualni interfacu firewallovat? :)
me docasne pokusy skoncily prave na to, ze ?? tcp/ip stack neposila
prave na pozadovane virtualni interface.
mozna relevantni cast z pf guide, ktera to ?? mozna ozrejmuje:
"The TCP/IP stack on the firewall compares the destination address of
incoming packets with its own addresses and aliases and detects
connections to itself as soon as they have passed the internal
interface. Such packets do not physically pass through the external
interface, and the stack does not simulate such a passage in any way."
dekuji
jirib
--
mail: jiri.b at sendmail.cz | jabber: jiri.b at njs.netlab.cz
IRCnet/EFnet/SILCnet: jirib | ICQ: 261273235
GPGfingerprint: 21A1 8E02 CDF0 DCAA B385 A253 EF0C F1CE B618 8EAB
More information about the Users-l
mailing list