Re: Firewall - Internal vs. External Interface



Paul wrote:
> I have a computer (OS Suse 8.2) with a wireless card connecting to a
> wireless router that in turn is connected to a cable modem over which I
> access the internet. Am I correct in thinking that I only need to
> activate the "Internal interface" checkbox on the Yast2 - Security -
> Firewall configuration page 1? Previously, I had checked both the
> "Internal interface" and "External interface" checkboxes, but doing that
> prevented me from accessing a wireless bridge on my network. What
> exactly would an "External interface" be located on a network? What
> would be the physical configuration/layout? The wireless bridge isn't
> an "External interface" meant to be protected by the firewall, is it?
> (It doesn't show up in the dropdown list of "External interfaces"; all
> I get are two choices, eth0 and eth1.)

In general the external interafce is connected to the internet
router/bridge/modem and the internal interface to the LAN.

inet modem/router <---> ext iface - FW Box - int iface <---> LAN

I don't know what to check on the YAST2 SuSEFirewall configuration
pages. In my opinion the SuSEFirewall is not setup secure, therefore i
threw it away after a short look.

The question is, do you have a firewall enabled on the wlan router or
the cable modem? If so the interfaces can be handled as internal,
otherwise the device connected to the internet needs to be setup as
external.

Eric
.



Relevant Pages

  • Re: TV service query ? ? ?
    ... a wireless router. ... a router with extended coverage. ... cable and a wireless connection that you can not see. ... contract with the cable company for one legitimate internet service? ...
    (alt.home.repair)
  • Re: ISA 2004 - How to allow Guest and Client access from wireless
    ... internet access and now wireless that are a pain in the rear. ... That could plug into another port on the router. ... The router has 4 "internal" ports; one is taken up by the cable ...
    (microsoft.public.windows.server.sbs)
  • Re: TV service query ? ? ?
    ... a wireless router. ... a router with extended coverage. ...   Probably not. ... contract with the cable company for one legitimate internet service? ...
    (alt.home.repair)
  • Re: ISA 2004 - How to allow Guest and Client access from wireless
    ... peace and quiet here are great for working; it's just the darn internet ... access and now wireless that are a pain in the rear. ... That could plug into another port on the router. ... The router has 4 "internal" ports; one is taken up by the cable ...
    (microsoft.public.windows.server.sbs)
  • Re: ISA 2004 - How to allow Guest and Client access from wireless
    ... peace and quiet here are great for working; it's just the darn internet ... access and now wireless that are a pain in the rear. ... Microsoft MVPs ... That could plug into another port on the router. ...
    (microsoft.public.windows.server.sbs)