Bluehost.com Web Hosting $6.95

possibly silly question

This is a discussion on possibly silly question within the Linux Networking forums, part of the Linux Forums category; With the proliferation of these PPPOE account from SBC and the like, I'm wondering .... Since you don't have ...


Go Back   Usenet Forums > Linux Forums > Linux Networking

FAQ Members List Calendar Search Today's Posts Mark Forums Read
  #1 (permalink)  
Old 10-07-2003
Mairhtin O'Feannag
 
Posts: n/a
Default possibly silly question

With the proliferation of these PPPOE account from SBC and the like, I'm
wondering ....

Since you don't have a static IP, is it possible to have a firewall linux
box? You don't have a need for any server applications, obviously, but how
would one "NAT" in that situation?

TIA,

Mairhtin O'Feannag
Reply With Quote
  #2 (permalink)  
Old 10-07-2003
Alan Connor
 
Posts: n/a
Default Re: possibly silly question

On Tue, 07 Oct 2003 02:29:42 GMT, Mairhtin O'Feannag <irishboyca@rocketmail.com> wrote:
>
>
> With the proliferation of these PPPOE account from SBC and the like, I'm
> wondering ....
>
> Since you don't have a static IP, is it possible to have a firewall linux
> box? You don't have a need for any server applications, obviously, but how
> would one "NAT" in that situation?
>
> TIA,
>
> Mairhtin O'Feannag


It's not a silly question, but your subject line IS silly. Please put
a description of your problem in the subject line for the archives and
others that can make use of the thread in the present.

I generally ignore subjects like that, and a lot of others do too.


--
Later, Alan C
You can find my email address at the website: contact.html
take control of your mailbox ----- elrav1 ----- http://tinyurl.com/l55a
Reply With Quote
  #3 (permalink)  
Old 10-07-2003
Jem Berkes
 
Posts: n/a
Default Re: possibly silly question

> Since you don't have a static IP, is it possible to have a firewall
> linux box? You don't have a need for any server applications,
> obviously, but how would one "NAT" in that situation?


Yes, of course it's possible. With modern iptables configurations there is
no reason to ever specify an IP address. Use _interfaces_ instead in your
netfilter rulesets.

--
Jem Berkes
http://www.sysdesign.ca/
Reply With Quote
  #4 (permalink)  
Old 10-07-2003
Leon The Peon
 
Posts: n/a
Default Re: possibly silly question


"Jem Berkes" <jem@users.pc9__org> wrote in message
news:Xns940CEE5B8C2FBjbuserspc9org@205.200.16.73.. .
> > Since you don't have a static IP, is it possible to have a firewall
> > linux box? You don't have a need for any server applications,
> > obviously, but how would one "NAT" in that situation?

>
> Yes, of course it's possible. With modern iptables configurations there is
> no reason to ever specify an IP address. Use _interfaces_ instead in your
> netfilter rulesets.


There's also the question of whether the firewall rules are deleted when the
interface is down ?

Do you have to set the rules to be created by PPPoE daemon once the
interface is connected ?
Do PPPoE daemons have the equivalent of pppd's ip_up , ip_down scripts.
and do they need to be used to do firewalling for PPPoE links ?



>
> --
> Jem Berkes
> http://www.sysdesign.ca/



---
Outgoing mail is certified Virus Free.
Checked by AVG anti-virus system (http://www.grisoft.com).
Version: 6.0.522 / Virus Database: 320 - Release Date: 29/09/2003


Reply With Quote
  #5 (permalink)  
Old 10-07-2003
James Knott
 
Posts: n/a
Default Re: possibly silly question

Mairhtin O'Feannag wrote:

> With the proliferation of these PPPOE account from SBC and the like, I'm
> wondering ....
>
> Since you don't have a static IP, is it possible to have a firewall linux
> box? You don't have a need for any server applications, obviously, but
> how would one "NAT" in that situation?


There's a couple of methods.

a) Filter on the interface.
2) Monitor the current IP. The dhcp client can run an executable, whenever
the IP changes.

--

Fundamentalism is fundamentally wrong.

To reply to this message, replace everything to the left of "@" with
james.knott.
Reply With Quote
Reply
Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On




All times are GMT +1. The time now is 10:06 AM.


Powered by vBulletin® Version 3.7.3
Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.0.0