Dana Hudes wrote:
bridging is not the solution. That doesn't accomplish anything for you. You want to use NAT. without bothering your isp etc. just have a public ip on the dsl router Ethernet, another on the 'external' interface of your 2-Ethernet PC and on the interal one you use a private network (everyone seems enamored of 192.168.0.0/16 but you could use 10/8 if you like)
On Thu, 1 Apr 2004, Guido Tschakert wrote:
Hi Dana, oh no, I don't want NAT! To be honest, I already have NAT for the internal network! Try to show my network ------------ |DSL-Router| ------------ | | ------------ -------------- ------------------ |Switch/HUB|----|Firewall/NAT|-----|INTERNAL-NETWORK| ------------ -------------- ------------------ | | | | -------------- | ------|External Box| | -------------- | | -------------- -------------|External Box| -------------- I know the external boxes look a bit strange, but we have our reasons therefore (all off them have a build in firewall!). The problem is that sometimes I have to guarantee upstream/downstream rates for the external boxes. That is why I want to put another box between the Router and the Switch. This box should do some traffic control and by the way, why not have some more firewall rules to protect the network? (And no, we don't want to put the external boxes in a DMZ :-) guido