[SLE] selective NAT possible?



i have installed opensuse 10 on the gateway of a medium-sized network. i
want the gateway to be able to do packet forwarding and ip masquerading
for only some hosts of the internal network (172.16.0.0/16). in other
words, i want to share the internet connection with only those clients
that i select. using acl-s in squid in not the answer, because i want to
control *all* traffic, not only http or ftp. can this be done using
free/opensource software?
i am not an advanced net admin, so if the answer involves advanced
topics, please try to provide some tutorial links too.
thanks.


- t.
--
cogito, ergo es.


--
Check the headers for your unsubscription address
For additional commands send e-mail to suse-linux-e-help@xxxxxxxx
Also check the archives at http://lists.suse.com
Please read the FAQs: suse-linux-e-faq@xxxxxxxx



Relevant Pages

  • n00b ipf/ipnat questions
    ... i've been trying to set up an ipf/ipnat gateway machine, to protect an internal network of two machines: ... pass out quick on xl0 proto tcp from any to any keep state ...
    (FreeBSD-Security)
  • Re: Still having firewall issues
    ... How many subnets are in your SBS internal network? ... > 4) Click Add Adapter and then select Server Local Area Connection. ... No default gateway difined. ... > to the same internal default gateway address as the ISA Server computer. ...
    (microsoft.public.windows.server.sbs)
  • Re: Exchange 2003 does not receive external mail
    ... was the one specified on the internal network. ... gateway for the external interface. ... I'm on our internal network and I telnet to the external address, ... Transport shows generates nothing in the event logs. ...
    (microsoft.public.exchange.connectivity)
  • Is my routing table right?
    ... links to our internal network, and the external network card links to ... My hunch is that the default gateway could be getting in the way here. ... Persistent Routes: ...
    (microsoft.public.isa)
  • Re: Something new?
    ... Would you be looking into something similar to a Checkpoint client auth, ... > some type of gateway or method for setting up an OS to ... > ports on the internal network would be blocked until ... Training features 6 hand-on courses on May 12-13 taught by professionals. ...
    (Security-Basics)