Re: Packets sent from an alias have wrong source address

From: Benjamin Goldsteen (ben_at_inka.mssm.edu)
Date: 01/28/04

  • Next message: Walter Roberson: "Re: Old indy2 rendered unbootable... (long post)"
    Date: 28 Jan 2004 12:51:35 -0800
    
    

    Marek Zawadzki <mzawadzk@rose.man.poznan.pl> wrote in message news:<slrnc1f9tv.8t6.mzawadzk@rose.man.poznan.pl>...
    > I have a private IP alias on my public ethernet interface.
    > The problem is that packets sent to private addresses have public source
    > address instead of the private one. This behaviour for example breaks the
    > firewall rules.

    IRIX always sets the source IP address of a packet to the primary IP
    address of the interface. There are pros and cons of this approach
    but that is the way that IRIX does it and I don't think it will
    change. This subject has come up before but SGI likes it the way it
    is.

    > The box does not act as a router.

    IRIX does not make a good router. However, I believe it will function
    as a router if you have two (physical) NIC. Otherwise, you'll have to
    buy a real router.

    P.S.This From: address is not receiving e-mail.


  • Next message: Walter Roberson: "Re: Old indy2 rendered unbootable... (long post)"

    Relevant Pages

    • Re: Packets sent from an alias have wrong source address
      ... >> I have a private IP alias on my public ethernet interface. ... >> The problem is that packets sent to private addresses have public source ... > IRIX always sets the source IP address of a packet to the primary IP ...
      (comp.sys.sgi.admin)
    • Packets sent from an alias have wrong source address
      ... I have a private IP alias on my public ethernet interface. ... The problem is that packets sent to private addresses have public source ...
      (comp.sys.sgi.admin)
    • Re: Weird IP
      ... usually it's no problem to send packets with private source IP ... IP addresses inside his own network, as long as packets traversing his ... If the attacker and your server are ...
      (Security-Basics)
    • Re: multiple IP addresses on a single machine
      ... send the packets to get those packets to you. ... If you use the private address range 10.x.x.x 192.168.x.x then you can do ... over the public nets. ... you had better agree with your network admin. ...
      (comp.os.linux.networking)
    • Re: 172.16.x.x routable?
      ... >>for private ip addresses like the 192.168.x.x addresses are. ... They were several hundred miles away so their packets had to ... He had a router between his DSL modem and his ... received the ping replies. ...
      (comp.security.firewalls)