Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 29 Nov 2001 16:47:46 -0800 (PST)
From:      Chris Appleton <appleton_chris@yahoo.com>
To:        freebsd-questions@freebsd.org
Subject:   RE: bridge vs. router 
Message-ID:  <20011130004746.45569.qmail@web14804.mail.yahoo.com>

next in thread | raw e-mail | index | archive | help
Apologies, I am learning and perhaps didn't explain
correctly and will try again.

I have setup 4.4-release with 2 rl nic for firewalling
purpose.  Rather than nat with ipfw, I would prefer to
leave my c block entact and drop BSD with
ipfw/ipfilter (another debate) between my dsl router
(my.existing.subnet.1) and the rest of
my.existing.subnet.xxx

My question is: can I edit the route table to pass
traffic destined for the gateway (.1) via one adapter
(rl0) and keep the rest of my.existing.subnet.xxx
traffic connected to the other card (rl1)? 
Essentially filtering ports (whichever ports I want,
that shouldn't matter here) between.

OR is a bridge a better fit for this job because it is
meant to split a like subnet (even though i really
only want the gateway .1 on one side and the rest on
the other)?

I've read ipfw on bridge can slooow things down and
bridge doesn't play nice with rl drivers.  I have
about 35-40 nodes, some servers.

Any thoughts appreciated,  thanks for the original
reply which I've ommitted to hide my stupidity.




__________________________________________________
Do You Yahoo!?
Yahoo! GeoCities - quick and easy web site hosting, just $8.95/month.
http://geocities.yahoo.com/ps/info1

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20011130004746.45569.qmail>