View previous topic :: View next topic |
Author |
Message |
AnarchyLinux n00b
![n00b n00b](/images/ranks/rank_rect_0.gif)
Joined: 24 Jun 2007 Posts: 3
|
Posted: Tue Jun 26, 2007 2:52 am Post subject: transparent firewall question ? |
|
|
anyone get one working infront of a adsl connection ?
for xeample
Code: |
asdl modem (ppp) -> transparent firewall (virtual bridge with IPS IDS) -> firewall distro (pppoe program to connect to internet)
|
iv been trying to put it infront of my firewall (that way it is not behind it making it the more secure 1st line of defense) but im not too sure of the layer 2 being gone is effective the proper operation of my pppoe linux based dial up connection program which is needed to connect ?
anyone get one working or know if it is possible or sense layer 2 is gone on this transparent bridge it effects the pppoe connection program from operating properly ? |
|
Back to top |
|
![](templates/gentoo/images/spacer.gif) |
carpenike Tux's lil' helper
![Tux's lil' helper Tux's lil' helper](/images/ranks/rank_rect_1.gif)
Joined: 10 Feb 2005 Posts: 127
|
Posted: Thu Jun 28, 2007 1:31 am Post subject: |
|
|
Hello,
You're going to want to put your firewall after your PPP setup. I'm not aware of a way that your firewall is going to be able to filter on the LCP traffic; the PPP needs to be terminated first... After that it's pretty easy... Bridge group with your two NICs, you can leave it without an IP address if you want to ensure complete anonymity/security.
Shorewall makes it real easy to set up the IPTables rules; make sure you have ebtables configured into your kernel though.
Have fun! |
|
Back to top |
|
![](templates/gentoo/images/spacer.gif) |
|