virtualni dmz

Jiri B. jiri.b at sendmail.cz
Mon Jan 3 21:58:37 CET 2005


Zdravim,

omlouvam se za podivnou otazku ale neda mi to.

Jak bychte udelali virtualni sit - dmz - uvnitr systemu na virtualnim 
rozhrani tak aby slo na tom virtualni interfacu firewallovat? :)

me docasne pokusy skoncily prave na to, ze ?? tcp/ip stack neposila 
prave na pozadovane virtualni interface.

mozna relevantni cast z pf guide, ktera to ?? mozna ozrejmuje:

"The TCP/IP stack on the firewall compares the destination address of 
incoming packets with its own addresses and aliases and detects 
connections to itself as soon as they have passed the internal 
interface. Such packets do not physically pass through the external 
interface, and the stack does not simulate such a passage in any way."

dekuji

jirib

-- 
mail: jiri.b at sendmail.cz | jabber: jiri.b at njs.netlab.cz
IRCnet/EFnet/SILCnet: jirib | ICQ: 261273235
GPGfingerprint: 21A1 8E02 CDF0 DCAA B385  A253 EF0C F1CE B618 8EAB



More information about the Users-l mailing list