Solved

Need help to configure a gateway server in linux

Posted on 2009-07-02
1
373 Views
Last Modified: 2013-12-16
I am using Fedora core 8 as a gateway server. In my gateway server I have configured DHCP, DNS, Squid Proxy & it will act as router (IPForwarding). I am connecting internet using Linksys broadband router in that router NAT enabled. If any client connects to my gateway server they can able to access the internet directly because in router NAT enabled and in getaway server IP-Forwarding enabled.


I enable IP-Forwarding in gateway server for VPN Routing.

Problem:

From any client pc if we ping google.com or any website I am getting icmp reply by default, so user not using the proxy server they accessing the internet directly. This problem occurs due to enable NAT in router and IPforwarding in gateway server.


Gateway server NIC details:
eth0: 192.168.0.0/24   (For local connection)
eth1: 192.168.20.0/24 (For broadband connection)

This is my requirement:

1)      I want to block the user to access the internet directly, by using firewall. (without disable the NAT and IP-Forwarding)
2)      I want to allow one particular ip to access the internet directly via gateway server using NAT.
3)      Allow one particular website (eg. MSDN site) to all via NAT in gateway server.


0
Comment
Question by:rajasekarramasamy
1 Comment
 
LVL 5

Accepted Solution

by:
AngelGabriel earned 250 total points
ID: 24768591
You should look into a distribution called Endian Firewall - It will help you to achieve what you want, without having to learn to write iptables rules properly
0

Featured Post

Connect further...control easier

With the ATEN CE624, you can now enjoy a high-quality visual experience powered by HDBaseT technology and the convenience of a single Cat6 cable to transmit uncompressed video with zero latency and multi-streaming for dual-view applications where remote access is required.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Note: for this to work properly you need to use a Cross-Over network cable. 1. Connect both servers S1 and S2 on the second network slots respectively. Note that you can use the 1st slots but usually these would be occupied by the Service Provideā€¦
Fine Tune your automatic Updates for Ubuntu / Debian
Connecting to an Amazon Linux EC2 Instance from Windows Using PuTTY.
This demo shows you how to set up the containerized NetScaler CPX with NetScaler Management and Analytics System in a non-routable Mesos/Marathon environment for use with Micro-Services applications.

809 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question