Iptables and ip aliasing?



Hi,
I've got a firewall with 3 interfaces on, one internal nic, one external
and one for the dmz.

Today we only have one ip address, which is a fully routable address on
the external nic. But we're expanding and getting a whole c-class net. I
know that I can use ip aliases to replicate the external nic with more
addresses, like this:
eth0:1
eth0:2
etc

But I've read somewhere that Iptables does not work with ip aliases. How
do I make my firewall have say 5 ip addresses on the external nic, with
iptables working? Is it possible?

Regards,
Andreas

--
ubuntu-users mailing list
ubuntu-users@xxxxxxxxxxxxxxxx
Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-users



Relevant Pages

  • IP Aliases problem with Redhat and Eth1:8
    ... While setting up a Redhat Iptables based Firewall to forward packets ... forwarding to my DMZ. ... I had believed that you could define upto 256 aliases, ...
    (comp.security.firewalls)
  • IP Aliases problem with Redhat and Eth1:8
    ... While setting up a Redhat Iptables based Firewall to forward packets ... forwarding to my DMZ. ... I had believed that you could define upto 256 aliases, ...
    (comp.security.firewalls)
  • Ang: RE: Firewall and DMZ topology
    ... Network Engineer ... Subject: Firewall and DMZ topology ... > The Gartner Group just put Neoteris in the top of its Magic Quadrant, ...
    (Security-Basics)
  • RE: Firewall and DMZ topology
    ... Subject: Firewall and DMZ topology ... Should the DMZ be behind the LAN and not split off at the firewall, ... > The Gartner Group just put Neoteris in the top of its Magic Quadrant, ...
    (Security-Basics)
  • RE: Firewall and DMZ topology
    ... Subject: Firewall and DMZ topology ... Also, when I say firewall, I mean Router + Firewall. ... Should the DMZ be behind the LAN and not split off at the firewall, ... > The Gartner Group just put Neoteris in the top of its Magic Quadrant, ...
    (Security-Basics)