From owner-freebsd-questions Thu Nov 29 16:47:53 2001 Delivered-To: freebsd-questions@freebsd.org Received: from web14804.mail.yahoo.com (web14804.mail.yahoo.com [216.136.224.220]) by hub.freebsd.org (Postfix) with SMTP id 9006D37B405 for ; Thu, 29 Nov 2001 16:47:48 -0800 (PST) Message-ID: <20011130004746.45569.qmail@web14804.mail.yahoo.com> Received: from [24.114.126.15] by web14804.mail.yahoo.com via HTTP; Thu, 29 Nov 2001 16:47:46 PST Date: Thu, 29 Nov 2001 16:47:46 -0800 (PST) From: Chris Appleton Subject: RE: bridge vs. router To: freebsd-questions@freebsd.org MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Sender: owner-freebsd-questions@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.ORG Apologies, I am learning and perhaps didn't explain correctly and will try again. I have setup 4.4-release with 2 rl nic for firewalling purpose. Rather than nat with ipfw, I would prefer to leave my c block entact and drop BSD with ipfw/ipfilter (another debate) between my dsl router (my.existing.subnet.1) and the rest of my.existing.subnet.xxx My question is: can I edit the route table to pass traffic destined for the gateway (.1) via one adapter (rl0) and keep the rest of my.existing.subnet.xxx traffic connected to the other card (rl1)? Essentially filtering ports (whichever ports I want, that shouldn't matter here) between. OR is a bridge a better fit for this job because it is meant to split a like subnet (even though i really only want the gateway .1 on one side and the rest on the other)? I've read ipfw on bridge can slooow things down and bridge doesn't play nice with rl drivers. I have about 35-40 nodes, some servers. Any thoughts appreciated, thanks for the original reply which I've ommitted to hide my stupidity. __________________________________________________ Do You Yahoo!? Yahoo! GeoCities - quick and easy web site hosting, just $8.95/month. http://geocities.yahoo.com/ps/info1 To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-questions" in the body of the message