Astaro User Bulletin Board
Go Back   Astaro User Bulletin Board > Astaro Gateway Products > Management, Networking, Logging and Reporting

Welcome to the Astaro User Bulletin Board.
If this is your first visit, be sure to check out the FAQ by clicking the link above. You may have to register before you can post: click the register link above to proceed. To start viewing messages, select the forum that you want to visit from the selection below.

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 06-18-2009, 03:42 PM
Junior Member
 
Join Date: Sep 2004
Posts: 3
Default Dual NICs

Hi All,

I hope you can help me with a packet filter config.
I have two internal NICs.
One is for unfiltered access to the Internet, the other is for filtered access.
Unfiltered access is controlled by IP. NIC1
MASQ Internal (Network)> External
PF allow only group of IPs

Any traffic on NIC2 has already been filtered and should just be passed on.
MASQ WebFilter (Network)> External
PF ????

I have a couple of concerns....
First both Network addresses for the two NICs are the same.
If I allow all on NIC2 is that going to allow all on NIC1?

Any help would be great.
Thanks
Reply With Quote
  #2 (permalink)  
Old 06-18-2009, 08:11 PM
Jack Daniel's Avatar
Moderator
 
Join Date: Jul 2008
Location: Cape Cod, Mass, US
Posts: 381
Default

I don't understand your configuration, are you saying you have bridged two interfaces to the internal network? Or Link Aggregation?

Normally, you would simply use a single internal interface and use profiles to apply different policies to hosts by IP address.

Or, have I completely misunderstood the situation?
__________________
Are you Linkedin to Astaro? http://www.linkedin.com/e/gis/139679/189D6C60EC64

Random Rants from an InfoSec Curmudgeon, UnCommon Sense Security Blog http://blog.uncommonsensesecurity.com
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT. The time now is 04:38 PM.

 

Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.


These pages are specifically maintained for the discussion of firewall issues within the Open Source community, and might already reflect new alpha/beta releases under development. Please refer to our product specifications for the functionality of the actual release. Discussions of new/enhanced functionality does not constitute a commitment of Astaro, to integrate this functionality into future releases. issues within the Open Source community, and might already reflect new alpha/beta releases under development. Please refer to our product specifications for the functionality of the actual release. Discussions of new/enhanced functionality does not constitute a commitment of Astaro, to integrate this functionality into future releases.