Solved

configuring multi home solaris 8 box

Posted on 2001-09-10
6
330 Views
Last Modified: 2013-12-27
Hi,

I have a solaris 8 box, which has 2 network cards,
one to internet (via a router: ie. 202.20.20.1),
one to local network (192.168.1.100). How can I configure so that only networks other than 192.168.1.x, can go thru
the router?
And I do NOT want it to be a router itself.

I did:  /etc/notrouter
/etc/gateways
and /etc/defaultrouter

but, local machines accessing it has been realy slow, internet access to it is OK.

thanks.
0
Comment
Question by:steviewonder
6 Comments
 
LVL 1

Expert Comment

by:k.kidambi
ID: 6472055
Here is the detailed procedure how to configure your cards.

consider you have hme0 and hme1 cards.
Make the both ip entries in /etc/hosts file. and create /etc/hostname.hme0[1] files. (this will bring up the interfaces at the boot time)
issue the following commands.

# ifconfig hme0 plumb
# ifconfig hme0 {your base ipaddress} netmask {your netmask} up
 when you do the 2nd step be sure that the physical network connectivity exists to the box.

do the same thing to your hme1 also.

now comes configuring the default gateways to your route.

# route add default {give your default router address} metric 1
 
for 192 network to go thru internet issue
# route add net 192.168.1.0 202.20.20.1 metric 1

If you want you can make this as default rouer also. IF you want to do that create a /etc/defaultrouter file with the 202.20.20.1 ip address. This will pickup the default route at the boot time.


Post your comments here if you have any doubts/clarifications.

Kidambi
 

0
 
LVL 40

Expert Comment

by:jlevie
ID: 6474307
I'm not sure that I understand what you are trying to do, but I suspect that you are wanting to set the machine up as a NAT'ing gateway. To do that with Solaris you'll need something like IPFilter, which you can get from http://cheops.anu.edu.au/~avalon/ip-filter.html

The slow network performance is probably due to a link mis-negotiation problem between the second NIC and the hub or switch it is connected to. The symptoms of that include slow nework performance and a high collision rate on the Sun box when it is sending data (like with an ftp upload to something). You can fix that by forcing the link speed and mode with:

*
* Force 100Mb FDX on hme
*
set hme:hme_adv_autoneg_cap=0
set hme:hme_adv_100T4_cap=0
set hme:hme_adv_100hdx_cap=0
set hme:hme_adv_100fdx_cap=1
set hme:hme_adv_10fdx_cap=0
set hme:hme_adv_10hdx_cap=0

which will set the link to 100Mbps FDX. You may also, in the case of a switch, need to force the switch port to 100Mbps FDX to get a complete fix.
0
 
LVL 20

Expert Comment

by:tfewster
ID: 8051709
No comment has been added lately, so it's time to clean up this Topic Area.
I will leave a recommendation for this question in the Cleanup topic area as follows:

- PAQ, no points refunded

Please leave any comments here within the next 7 days

PLEASE DO NOT ACCEPT THIS COMMENT AS AN ANSWER !

tfewster
Cleanup Volunteer
0
Find Ransomware Secrets With All-Source Analysis

Ransomware has become a major concern for organizations; its prevalence has grown due to past successes achieved by threat actors. While each ransomware variant is different, we’ve seen some common tactics and trends used among the authors of the malware.

 

Expert Comment

by:DigitalXtreme
ID: 8061733
I have noticed that you have 9 opened questions that are quite old. You have a responsibility to close these questions out.
You can get to them by clicking on your name link at the upper left of the web page.

http://www.experts-exchange.com/Operating_Systems/Solaris/Q_20181671.html
http://www.experts-exchange.com/Operating_Systems/Solaris/Q_20181063.html
http://www.experts-exchange.com/Programming/Programming_Languages/Java/Q_20357606.html
http://www.experts-exchange.com/Web/Web_Languages/CGI/Q_20375901.html
http://www.experts-exchange.com/Web/Web_Languages/CGI/Q_20361952.html
http://www.experts-exchange.com/Web/Web_Languages/CGI/Q_20336471.html
http://www.experts-exchange.com/Networking/WinNT_Networking/Q_20164644.html
http://www.experts-exchange.com/Networking/Email_Groupware/Exchange_Server/Q_20338617.html
http://www.experts-exchange.com/Networking/Email_Groupware/Exchange_Server/Q_20164835.html


Please close all of your old questions (older than a month) within 7 days or I have a duty to report this to the site administrators who may take action on your account.
If you have question on how to dispose of a question that doesn't have an answer, just ask me by dropping a line on this question and I will assist you.
Thanks for helping keep Experts Exchange clean

DigitalXtreme
CS Moderator
0
 

Expert Comment

by:SpideyMod
ID: 8100268
steviewonder,
Time is running out to handle your open questions.  Leaving this until tomorrow.

SpideyMod
Community Support Moderator @Experts Exchange
0
 

Accepted Solution

by:
SpideyMod earned 0 total points
ID: 8120904
PAQ'd and no points refunded

SpideyMod
Community Support Moderator @Experts Exchange
0

Featured Post

Top 6 Sources for Identifying Threat Actor TTPs

Understanding your enemy is essential. These six sources will help you identify the most popular threat actor tactics, techniques, and procedures (TTPs).

Join & Write a Comment

I promised to write further about my project, and here I am.  First, I needed to setup the Primary Server.  You can read how in this article: Setup FreeBSD Server with full HDD encryption (http://www.experts-exchange.com/OS/Unix/BSD/FreeBSD/A_3660-S…
Using libpcap/Jpcap to capture and send packets on Solaris version (10/11) Library used: 1.      Libpcap (http://www.tcpdump.org) Version 1.2 2.      Jpcap(http://netresearch.ics.uci.edu/kfujii/Jpcap/doc/index.html) Version 0.6 Prerequisite: 1.      GCC …
This video shows how to set up a shell script to accept a positional parameter when called, pass that to a SQL script, accept the output from the statement back and then manipulate it in the Shell.
In a previous video, we went over how to export a DynamoDB table into Amazon S3.  In this video, we show how to load the export from S3 into a DynamoDB table.

743 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

13 Experts available now in Live!

Get 1:1 Help Now