From owner-freebsd-net Mon Mar 26 7:23: 2 2001 Delivered-To: freebsd-net@freebsd.org Received: from whale.sunbay.crimea.ua (whale.sunbay.crimea.ua [212.110.138.65]) by hub.freebsd.org (Postfix) with ESMTP id B5F9437B719 for ; Mon, 26 Mar 2001 07:22:56 -0800 (PST) (envelope-from ru@whale.sunbay.crimea.ua) Received: (from ru@localhost) by whale.sunbay.crimea.ua (8.11.2/8.11.2) id f2QFMcC50475; Mon, 26 Mar 2001 18:22:38 +0300 (EEST) (envelope-from ru) Date: Mon, 26 Mar 2001 18:22:38 +0300 From: Ruslan Ermilov To: Wes Peters Cc: net@FreeBSD.org Subject: Re: Indirect routes with indirect gateways, bugfix Message-ID: <20010326182238.A49257@sunbay.com> Mail-Followup-To: Wes Peters , net@FreeBSD.org References: <20010321133611.A62997@sunbay.com> <200103212116.QAA22097@khavrinen.lcs.mit.edu> <20010321133611.A62997@sunbay.com> <3AB8E7E2.36F360AA@softweyr.com> <20010322094429.B53063@sunbay.com> <3ABF59EC.68C80FF2@softweyr.com> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline User-Agent: Mutt/1.2.5i In-Reply-To: <3ABF59EC.68C80FF2@softweyr.com>; from wes@softweyr.com on Mon, Mar 26, 2001 at 08:02:04AM -0700 Sender: owner-freebsd-net@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.org On Mon, Mar 26, 2001 at 08:02:04AM -0700, Wes Peters wrote: > Ruslan Ermilov wrote: > > > > I wrote: > > > > > > Unless someone has a good motivation for not doing this, I am going > > > to commit the attached patch that disallows indirect routes with > > > indirect gateways. > > > > > Okay, I will rephrase this. Can you give me at least one example when > > adding an indirect route with indirect gateway will work? If not, I > > strongly insist on excluding this code. > > Certainly. You add a route to a host on your corporate backbone via > a non-local router to guarantee that management accesses the accounting > servers via a path that does not traverse engineering. Of course the > proper way to do this is with careful control of route tables or by > using VLANs, but that's not what many companies have. Large networks > of routers and hubs are still commonplace, and this "hack" allows the > network administrator to create dedicated routes from one subnet to > another without requiring them to spread the routes across the entire > installation. > Excuse me, but have you really tried this? I assume, yes. All I can get is the ``arp: can't allocate llinfo'' warning; IOW, I can't make such a route work. Can you tell me what routing tables manupulations should I make to make such a route start routing packets. An example with the route(8) command would be great. Thanks, -- Ruslan Ermilov Oracle Developer/DBA, ru@sunbay.com Sunbay Software AG, ru@FreeBSD.org FreeBSD committer, +380.652.512.251 Simferopol, Ukraine http://www.FreeBSD.org The Power To Serve http://www.oracle.com Enabling The Information Age To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-net" in the body of the message