Mailinglist Archive: opensuse-security (636 mails)

< Previous Next >
AW: [suse-security] Transparent proxy ...
  • From: "Philipp Snizek" <mailinglists@xxxxxxxxx>
  • Date: Fri, 2 Feb 2001 19:02:22 +0100
  • Message-id: <000201c08d42$4b35aa20$b400000a@xxxxxxxxxxxxxxx>
Richard,

> Mi idea was to build a Firewall where PC1 would ONLY do
> packet filtering
> (masq, forw, redir, etc.) and PC2 would do the rest (snmp
> server, pop server,
> proxy server, dns server, etc.) Also the hardware is very

proxy on pc2 makes no sense.

> different on both
> PC's:
> PC1: 1 x 700 Mhz, 64 MB RAM, IDE
> PC2: 2 x 700 Mhz, 512 MB RAM, SCSI, more disk space than PC1

Very nice HW.

You can do that, and you'll be fine:
PC1:
www,ssl,pasv-ftp proxy (squid)
dns forwarder bound on int-eth(bind 8.2.3 not below.)
paketfiltering smtp (firewalled by ipchains.)

PC2:
pop3 and smtp server.
dns if still needed (have you got a dmz?)

Philipp

< Previous Next >
References