[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

routing question - /32 subnet OK?



Scenario:

I have been assigned a 255.255.255.224 subnet.

Given:
Network Address: xxx.xxx.xxx.32
Gateway Address (Black box from ISP): xxx.xxx.xxx.33
Useable IPs: xxx.xxx.xxx.34-64

Could I set up a firewall by doing this:

 ---------      -------------
| Gateway |    | OpenBSD Box |
 ---------      -------------
   |                | 
xxx.xxx.xxx.33---xxx.xxx.xxx.34/255.255.255.255
                 xxx.xxx.xxx.35/255.255.255.224
                    |
                  -----
                 | DMZ |---xxx.xxx.xxx.37-64
                  -----
                    |
                -------------
               | OpenBSD Box |
                -------------
                    |
                 xxx.xxx.xxx.36
                 192.168.1.1/255.255.255.0
                    |
               Private Network

Basically, I'd like to use all the valid IPs on servers in the DMZ and let the
workstations access the internet through NAT on the internal router.

Is it possible to set up routing this way, or do I need to use a different
private subnet, such as 172.16.0.0 for the DMZ and forward the appropriate ports to
the servers from the external router?

-- 
/-------------------------------------/
/ John E.P. Hynes                     /
/ john_(_at_)_hytronix_(_dot_)_ne_(_dot_)_mediaone_(_dot_)_net       /
/-------------------------------------/



Visit your host, monkey.org