Re: multihomed gateway

From: muhammad usman (usmanbsd_at_yahoo.com)
Date: 08/31/05


Date: Wed, 31 Aug 2005 13:43:45 -0700 (PDT)
To: freebsd-isp@freebsd.org

Yes, you can do source based routing in ipfw.
as fwd action doesnt alters the packet.
But i guess you need to recompile kernel with
IP_FORWARD option.

PF can also do the same.
http://www.openbsd.org/faq/pf/pools.html#outgoing

but not sure its possible in pf of freebsd.

regards

--- "Ezequiel O. Block"
<ezequiel.block@eobsistemas.com.ar> wrote:

> Boris Samorodov wrote:
> > On Wed, 31 Aug 2005 16:10:10 -0300 Ezequiel O.
> Block wrote:
> >
> >>Boris Samorodov wrote:
> >>
> >>>On Wed, 31 Aug 2005 15:15:40 -0300 Ezequiel O.
> Block wrote:
> >>>
> >>>
> >>>>I'm currently running mpd as a PPPoe server,
> serving 250~ users with
> >>>>no problems so far, what I need now is to add
> another ip pool range
> >>>
> >>>>from another provider, which means I need to
> handle two default
> >>>
> >>>>gateways, one for each C class network. but it
> seems that FreeBSD
> >>>>cann't have two defaultrouter="" directives in
> rc.conf ... i have
> >>>>googled about it and couldn't find any solution
> .. anyone here have
> >>>>had this issue before? any clue?
> >>>
> >>>Maybe ipfw fwd action should fit your needs.
> >
> >
> >>mmm I forgot to tell that each client pc gets a
> public ip address,
> >>such as 200.43.83.x and the server does proxy arp
> on them, do you
> >>think ipfw would be useful in this case?
> >
> >
> > Proxyarp is acting at receiving packets from
> internet while forwarding
> > takes place at sending packets. Seems that
> proxyarp is not an issue
> > here.
> >
> >
> > WBR
>
> You are right Boris, thanks for the info.
>
> Ezequiel.
> _______________________________________________
> freebsd-isp@freebsd.org mailing list
>
http://lists.freebsd.org/mailman/listinfo/freebsd-isp
> To unsubscribe, send any mail to
> "freebsd-isp-unsubscribe@freebsd.org"
>

                
__________________________________
Yahoo! Mail for Mobile
Take Yahoo! Mail with you! Check email on your mobile phone.
http://mobile.yahoo.com/learn/mail
_______________________________________________
freebsd-isp@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-isp
To unsubscribe, send any mail to "freebsd-isp-unsubscribe@freebsd.org"



Relevant Pages

  • [NT] Yahoo! Messenger URL Handler Remote DoS
    ... The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com ... A denial of service vulnerability exists in the way Yahoo! ... When these packets are sent Yahoo! ... Messenger version 6.0 ...
    (Securiteam)
  • Re: tcpdump problem
    ... > when I analyse the packets with ethereal, ... > Appel audio GRATUIT partout dans le monde avec le nouveau Yahoo! ... > To unsubscribe, ... Mail has the best spam protection around ...
    (freebsd-questions)
  • routing problem
    ... All 192.168.1.1 packets MUST go in and out throught ... Do You Yahoo!? ... Mail has the best spam protection around ... To UNSUBSCRIBE, email to debian-user-REQUEST@xxxxxxxxxxxxxxxx ...
    (Debian-User)
  • Re: Generating Traffic to Stress Test IDS
    ... Hailstorm has been my favorite in the ... "spew" packets onto the wire (what most HW-based products ... > Great stuff seeking new owners in Yahoo! ... Auctions! ...
    (Focus-IDS)
  • Re: Private IP address with yahoo messenger
    ... You can test it using yahoo booters and an authentic yahoo id both ... 2.Through packet malformation you can get information of the target IP ... Simply typing the text in chat window. ... thorough forensic analysis of the packets coming from target. ...
    (Security-Basics)