Hy! I try to make a Firewall. There are two networks. (one is 10.2.x.x/19, the other one is 10.2.22.x/19) I want that the 10.2.22.x can get trough the 10.2.x.x networt to the internet, the 10.2.22.x must also access certain servers in the 10.2.x.x network. At the time, I can get from the small network (10.2.22.x) to the bigger network (10.2.x.x), but I can't get from the bigger to the smaller... I'm working with iptables. I try to configure the firewall with webmin... Can anybody tell my, what I have to do? Thanks! Lia Falls mein Englisch zu unverstaendlich ist, das ganze nochmals auf Deutsch. Ich habe eine Firewall aufgesetzt. Ich will das das Firmennetzwerk (10.2.x.x/19) vor einem Testraum schuetzen (10.2.22.x/19). Im Moment komme ich vom Testraum ins Firmennetzwerk und ins Internet. Doch vom Firmennetzwerk komme ich nicht in den Testraum. Wo liegt mein Fehler? Gruss Lia
Hy!
I try to make a Firewall. There are two networks. (one is 10.2.x.x/19, the other one is 10.2.22.x/19) I want that the 10.2.22.x can get trough the 10.2.x.x ^^^^^^^^^^^ This is not a valid network address. The netmask must at least be /24. And even the 10.2.x.x is not unique for a /19 netmask. Are you sure
Am 23.03.2004 um 10:19 schrieb lila_lia@bluemail.ch: that /19 is correct? Please post the correct networks. Another hint: If the big network is a 10.2.0.0/16, you can't have another network beginning with 10.2. HTH, Ingo
networt to the internet, the 10.2.22.x must also access certain servers in the 10.2.x.x network.
Thanks! Lia
Hy!
I try to make a Firewall. There are two networks. (one is 10.2.x.x/19, the other one is 10.2.22.x/19) I want that the 10.2.22.x can get trough the 10.2.x.x ^^^^^^^^^^^ This is not a valid network address. The netmask must at least be /24. And even the 10.2.x.x is not unique for a /19 netmask. Are you sure that /19 is correct?
Please post the correct networks. Another hint: If the big network is a 10.2.0.0/16, you can't have another network beginning with 10.2.
HTH, Ingo
networt to the internet, the 10.2.22.x must also access certain servers in the 10.2.x.x network.
Syntax: 0.0.0.0/0 = all ip's 1.0.0.0/8 = 1.0.0.0 - 1.255.255.255 1.2.0.0/16 = 1.2.0.0 - 1.2.255.255 1.2.3.0/24 = 1.2.3.0 - 1.2.3.255 1.2.3.0/25 = 1.2.3.0 - 1.2.3.127 /x, where x = 32-y and y is the size in bits, that are allowed. 32 - 25 = 7 bit = 127 Philippe
participants (3)
-
Ingo Börnig
-
lila_lia@bluemail.ch
-
Philippe Vogel