Re: Masquerading private LAN to private ip



On Sun, 30 Dec 2007 19:18:49 -0800 (PST), entpneur@xxxxxxxxx <entpneur@xxxxxxxxx> wrote:
| I'm helping out to setup the Internet access for a local school.
| I've found out that the ISP is providing private IPs to the school,
| the info is as follow:
|
| ip range: 10.145.0.1 - 10.145.0.62
| mask: 255.255.255.192
|
| The school has about 200+ computers with only max 62 usable address,
| so I tried to setup a NAT router to masquerade the local LAN
| (10.145.8.0/255.255.254.0) to one of the provided IP. Theoretically,
| this should work, but it is not.
|
| My question is:
|
| Can I masquerade the entire LAN in private IPs to a private IP which
| belong to the ISP?
|
| 10.145.8.0/255.255.254.0 -----> 10.145.0.1 ----->
| ISP -----> Intenet
| School LAN (in private IPs) ISP's private IP
| most probably ISP masquerade to Internet


There is nothing I know about that would stop this working in theory. In
practice, I wouldn't use the 10.0.0.0/8 network for the internal/local
network.

If there are 200+ local computers, I'd use part of the 172.16.0.0/12
block (172.16.0.0 - 172.31.255.255), or the 192.168.0.0/16 block
(192.168.0.0 - 192.168.255.255). This makes it obvious what part of
the network an IP address belongs to, and make writing any firewall
rules easier (or at least makes typos less likely and less dangerous).


--
Reverend Paul Colquhoun, ULC. http://andor.dropbear.id.au/~paulcol
Asking for technical help in newsgroups? Read this first:
http://catb.org/~esr/faqs/smart-questions.html#intro
.



Relevant Pages

  • Masquerading private LAN to private ip
    ... I'm helping out to setup the Internet access for a local school. ... I've found out that the ISP is providing private IPs to the school, ...
    (comp.os.linux.networking)
  • Re: Linux router between LANs
    ... Since both ends of a private home connection will be private IPs, ... Since they *can't* be accessed from the internet, ... But why does the ISP presist in such a crazy amateurish setup? ... I for one would appreciate being able to use terminal servers from the ...
    (comp.os.linux.networking)
  • Re: Generation sexting: What teenage girls really get up to on the internet should chill every pare
    ... Becky is just 17 and still at school. ... British teenagers who have a growing obsession with pornography. ... during a BBC Radio 4 investigation into online pornography. ... as the internet beams it into their bedrooms. ...
    (uk.legal)
  • Re: FreeBSD challenged by Internet
    ... Subject: FreeBSD challenged by Internet ... rated speed on DSL I don't think the DSL line is the limiting factor. ... Are you talking from world to you, or are you talking from ISP to you? ... taken care of somehow between some Verizon server and the firewall. ...
    (freebsd-questions)
  • Re: OT: Net Neutrality is far more serious than people realise
    ... Ellacoya prides itself in being able to detect BitTorrent flows ... The internet is and always has ... The classic example is the granddaddy of email blacklists the RBL. ... Well your telco ISP will block VoIP by default. ...
    (comp.os.vms)