Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 15 May 2000 02:05:36 -0500 (CDT)
From:      Brennan W Stehling <brennan@offwhite.net>
To:        adam palitz <adampalitz@earthlink.net>
Cc:        free bsd questions <freebsd-questions@FreeBSD.ORG>
Subject:   Re: Freebsd and ADSL
Message-ID:  <Pine.BSF.4.10.10005150159090.65777-100000@home.offwhite.net>
In-Reply-To: <001d01bfbe38$f77d6720$92fe1818@socal.rr.com>

next in thread | previous in thread | raw e-mail | index | archive | help
Why would running a DSL with NAT not be secure?  I have ipnat doing
address translation for me to a 192.168 network with ipfw running on the
gateway box.  I believe that is decently secure.

Is it not?  Or were you saying that plugging computers into the ethernet
ports of the DSL device directly?  Now that would not be secure, unless
each machine was a firewall box I suppose.

With my system there is a DSL box with 5 ethernet ports.  I use one which
connects to one of the two ethernet cards in my FreeBSD box which is
acting as a gateway with ipnat.  I then have a second ethernet card go out
to a 8 port hub which then allows me to connect 7 other computers with
192.168.1.* addresses.  And each one is then behind the ipfw firewall in
addition to having the 192.168 private addresses.

I feel it is rather secure, although I have not really had someone audit
the system.  As I learn more about ipfw rules I will get into the guts a
bit more.

And maybe I will be able to get udp traffic to go through so I can watch
quicktime streaming properly on my iMac...  :)

Brennan Stehling - web developer and sys admin
projects: www.greasydaemon.com | www.onmilwaukee.com | www.sncalumni.com

Microsoft: Will you get a macro virus today?

On Sun, 14 May 2000, adam palitz wrote:

> Umm...I believe thats the internal 3com dsl router ...and I would say absalutly don't buy that piece of crap and expect it to work with BSD...My friend had one that he wanted to use with W2k...and of course they didn't even have drivers for that (so I doubt even linux would be supported)...Also...check and see if your DSL provider offers multiple Dynamic IPS...usually the big telco ISP's do, and if so try to get an external modem, and a hub (you said you where going to use NAT, so I take it that your not to concerned about security)...I don't know what area your in, but where I'm from (Southern California) they offer all CPE for free...If I was you I would try to find the same deal...try to haggle a little...see if anything comes of it.
> 
> adam
>   ----- Original Message ----- 
>   From: Clay Smith 
>   To: freebsd-questions@FreeBSD.ORG 
>   Sent: Sunday, May 14, 2000 2:24 PM
>   Subject: Freebsd and ADSL
> 
> 
>   I'm getting ADSL in my home on Thursday and I'll be using my freebsd server with NAT to get my network on the internet just like I do now.  The only problem is, I'm not getting  a dsl modem from my telco, so I have to purchase one elsewhere.  The best one I can find is an internal 3com PCI adsl ATU.  Does anyone know if this is supported under Freebsd 4.0-Stable?  If not, will it be if I upgrade to current?
> 



To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.BSF.4.10.10005150159090.65777-100000>