[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
routing question - /32 subnet OK?
- To: misc_(_at_)_openbsd_(_dot_)_org
- Subject: routing question - /32 subnet OK?
- From: "John E.P. Hynes" <john_(_at_)_hytronix_(_dot_)_ne_(_dot_)_mediaone_(_dot_)_net>
- Date: Thu, 23 Dec 1999 12:45:32 GMT
- Reply-to: john_(_at_)_hytronix_(_dot_)_ne_(_dot_)_mediaone_(_dot_)_net
Scenario:
I have been assigned a 255.255.255.224 subnet.
Given:
Network Address: xxx.xxx.xxx.32
Gateway Address (Black box from ISP): xxx.xxx.xxx.33
Useable IPs: xxx.xxx.xxx.34-64
Could I set up a firewall by doing this:
--------- -------------
| Gateway | | OpenBSD Box |
--------- -------------
| |
xxx.xxx.xxx.33---xxx.xxx.xxx.34/255.255.255.255
xxx.xxx.xxx.35/255.255.255.224
|
-----
| DMZ |---xxx.xxx.xxx.37-64
-----
|
-------------
| OpenBSD Box |
-------------
|
xxx.xxx.xxx.36
192.168.1.1/255.255.255.0
|
Private Network
Basically, I'd like to use all the valid IPs on servers in the DMZ and let the
workstations access the internet through NAT on the internal router.
Is it possible to set up routing this way, or do I need to use a different
private subnet, such as 172.16.0.0 for the DMZ and forward the appropriate ports to
the servers from the external router?
--
/-------------------------------------/
/ John E.P. Hynes /
/ john_(_at_)_hytronix_(_dot_)_ne_(_dot_)_mediaone_(_dot_)_net /
/-------------------------------------/
Visit your host, monkey.org