troubleshooting Question

linux as a router and firewall

Avatar of D_wathi
D_wathiFlag for India asked on
Linux Networking
5 Comments3 Solutions308 ViewsLast Modified:
Dear Sir:

Iam planning to setup linux box as a router and firewall with two nics , my isp has given the following ip segment
1. 221.134.8.189/30 ( in this 221.134.8.189 has been configured to the subscriber unit by the ISP )

2. ISP has asked us to use 221.134.8.190/30 for the router

3. they have give the LAN public ip segment 221.134.8.192/29 ( our usable ip 's are 221.134.8.193 to 221.134.8.198)


Now my requirement is  to make one linux box as router and firewall by making use of the router IP 221.134.8.190 for the eth1 interface and 192.168.1.245 for eth0 interface  and the same firewall system will function as transparent proxy server for the lan users

and one linux machine say box-1 works as a DNS , SAMBA , APACHE , MYSQL , FTP  ( this will be of private ip ) but in the router  DNAT will be done for this server

similarly SNAT for few ips are done in the firewall .

I think one possible method which i know is make use of only one public ip 221.134.8.190 and configure it as router and firewallwall make SNAT and DNAT rules for few private ip 's running the mail server , ftp server , apache server  in this case i will not be able use the other public lan ip's which is assigned to us that is 221.134.8.192/29  it is okay i do not mind by not making use of the public lan ip's 221.134.8.192/29  but i would like to know is this a suggested method if not please please suggest me the better method.















ASKER CERTIFIED SOLUTION
Join our community to see this answer!
Unlock 3 Answers and 5 Comments.
Start Free Trial
Learn from the best

Network and collaborate with thousands of CTOs, CISOs, and IT Pros rooting for you and your success.

Andrew Hancock - VMware vExpert
See if this solution works for you by signing up for a 7 day free trial.
Unlock 3 Answers and 5 Comments.
Try for 7 days

”The time we save is the biggest benefit of E-E to our team. What could take multiple guys 2 hours or more each to find is accessed in around 15 minutes on Experts Exchange.

-Mike Kapnisakis, Warner Bros