Re: Is This DSL configuration possible ???

From: Al Dykes (adykes_at_panix.com)
Date: 12/28/03


Date: 28 Dec 2003 12:41:47 -0500

In article <slrnbutvav.5ts.efflandt@typhoon.xnet.com>,
David Efflandt <efflandt@xnet.com> wrote:
>On 28 Dec 2003 08:46:56 -0500, Al Dykes <adykes@panix.com> wrote:
>>
>> I want to test some server systems and firewall combinations on my
>> LAN I can't see how to simulate access from the public internet.
>>
>> I've got a DSL/pppoe connection to a Linksys router/firewall (soon to
>> be replaced with an IPcop box). I'd love to put a small hub between
>> the linksys box and the DSL modem then plug a test client into the
>> hub. I know this won't work.
>>
>> Can this be done with a linux-based firewall, even if it requires a
>> third ethernet card ?
>
>What would a third ethernet do (unless you will have public static IPs on
>DMZ)? You could simply use 2 nics to insert test firewall between Linksys
>and hub with the LAN side a different network. You would just be
>temporarily firewalling the nic that faces the Linksys, and when ready to
>go live (direct to modem), would need to switch the firewall to ppp0
>(which can be refreshed automatically from a script in /etc/ppp/ip-up).
>
>This would allow you to test port scanning from a PC on the Linksys
>without being wide open to the internet.
>

A fair suggestion, but.....

I really want to test the production firewall sometimes, while I'm on
customer's site, and they don't know why they need a second firewall
box on hand. It's more than port scanning. I can do that kind of
thing from the shell account on my ISP's system. Having two firewalls
means that I have to manually keep them set up identically, and that's
real hard to do, over time.

>--
>David Efflandt - All spam ignored http://www.de-srv.com/

-- 
Al Dykes
-----------
adykes@panix.com


Relevant Pages

  • Re: VPN/PPOE/RWW Questions/Security
    ... The attitude for many is that Linksys' quality is going downhill. ... > one mapping on the firewall. ... > that his home LAN becomes inoperable. ... I have seen port 443 probed to death on my firewall logs for RWW. ...
    (microsoft.public.windows.server.sbs)
  • Linux on Linksys WRT54G
    ... customizing it by building my own firmware, to replace my existing firewall. ... and can't do with the Linksys box. ... DNS server both for caching on the LAN side, and for hosting a domain on ...
    (comp.os.linux.networking)
  • Re: OE Outbox fails after SP2 wireless cable
    ... And, in short order, 'windows update' downloaded and installed SP2. ... with the Linksys gateway, and I also checked a box on a list somewhere to ... I'm only using the Linksys hardware firewall, ... the existing installation? ...
    (microsoft.public.windows.inetexplorer.ie6_outlookexpress)
  • Re: Linksys router as Firewall
    ... >> The BEFSR41 router does that. ... >The Linksys does not isolate internal from external, ... >(unless you do MAC filtering or port filtering). ... >> Virus scanning and spam filtering is not a function of a firewall. ...
    (comp.security.firewalls)
  • Re: Zyxel router for Inspiron 1505?
    ... supercede the default firewall settings. ... names and include technical support (the others ... Someone suggested a Zyxel Extreme-MIMO X550 router. ... Linksys or D-Link. ...
    (alt.sys.pc-clone.dell)