From owner-freebsd-questions@FreeBSD.ORG Mon Jun 14 02:10:12 2004 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id A360916A4D1 for ; Mon, 14 Jun 2004 02:10:12 +0000 (GMT) Received: from kogut2.o2.pl (kogut2.o2.pl [212.126.20.58]) by mx1.FreeBSD.org (Postfix) with ESMTP id ED2FA43D2D for ; Mon, 14 Jun 2004 02:10:11 +0000 (GMT) (envelope-from fangorn@o2.pl) Received: from [172.16.0.2] (d088.2-0.pl [195.150.72.149]) by kogut2.o2.pl (Postfix) with ESMTP id D9AE5A9FD6 for ; Mon, 14 Jun 2004 04:09:44 +0200 (CEST) From: Fangorn To: freebsd-questions@freebsd.org Content-Type: text/plain Message-Id: <1087178986.588.37.camel@desk.myroom.pl> Mime-Version: 1.0 X-Mailer: Ximian Evolution 1.4.6 Date: Mon, 14 Jun 2004 04:09:47 +0200 Content-Transfer-Encoding: 7bit Subject: Multiple_External_IPs+IPFW+arp_proxy+Dummynet+natd_etc X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 14 Jun 2004 02:10:12 -0000 Hello! FreeBSD 5.2.1, IPFW(2 of course), 1 ext_if, 2 int_ifs, P200MMX, 96MB, HDD 2GB I have recently set up a router serving and shaping a small network +/-20 clients (mostly wireless, but that's not important, as the AP does the job). I do a static ARP, I have quite a simple firewall, of course natd is up and running fine. Some pipes and queues pretend to share the traffic fairly :). Now my concern is: 1. What is the best way to assign an external IP (I have 4 available) to a LAN client machine? 2. How (if at all) it affects traffic shaping? I would be greatful for a bunch of ideas and eternally greatful for examples of working scripts/firewall rules etc. Disclaimer: Yes, I did a google research, and found nothing that would cover the afformentioned problem. :-) At least nothing else than 'Well, you might try this ports thingy, but I don't really know if it helps.' ;-D PS: (or BTW) Maybe someone also has a solution to a problem of sharing two external connections in a reasonable way in such a network? Of course load-balancing would be desirable, but any working examples are welcome. Thank You for Your patience. -- Best regards, Fangorn fangorn@o2.pl