[olug] iptables behind router

Benjamin Montgomery bmontgom at cox.net
Tue Sep 14 13:27:02 UTC 2004


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On Tue, Sep 14, 2004 at 02:35:31AM -0500, William E. Kempf wrote:
> OK, if I understand you (remember, I'm new to the terminology), you're
> saying that all computers on the LAN need to be directed to forward
> outgoing connections through CompA in my case.  Combined with what Mr.
> Linder said, I can see how this would work.  But the rub is how to get the
> other computers to forward through CompA, since they are running Windows
> XP.

It is simple to get all of your machines on your private network to
forward through a NAT box.  The gateway address on all of your XP
machines should be set to the private address of the Linux box that is
running iptables.

If you aren't planning on any other uses for the computer doing NAT,
I'd recommend that you check out Smoothwall.
http://www.smoothwall.org/

This will basically turn an old Linux box into an easy-to-configure
router/firewall.  My setup is like this:

<Internet>--<Cable Modem>--<Smoothwall>--<Wireless network>
                                       |
													|
													--<Wired network>

IMO, Smoothwall is easy to configure without a lot of networking or
Linux knowledge.

- -Ben

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.4 (GNU/Linux)

iD8DBQFBRvGmC8dxY8SNlzsRAtC7AKCTUjxSV1p/GFgFCF8lW3uj2/g1/QCfTyHg
Ptu4GqIFHfcKWjH1YnyYnc4=
=L1X9
-----END PGP SIGNATURE-----



More information about the OLUG mailing list