News: This forum is now permanently frozen.
Pages: [1]
Topic: Transparent firewall problem  (Read 2489 times)
« on: October 17, 2008, 21:37:37 »
ideanet *
Posts: 4

Hi,
I have the following situation:

bridge modem Zyxel P870M   => M0n0  => servers with public IP on the OPT1 port

M0n0 it's configured to get public IP via PPPoE and configured in filtered bridge mode
(http://doc.m0n0.ch/handbook/examples-filtered-bridge.html), but the filtered bridge doesn't work...
I have just a little difference between the linked example and my situation:
the public ip assigned via PPPoE to WAN port of my M0n0wall it's also the gateway ip of my subnet assigned from provider (Cybernet, Swiss).

How I can resolve my problem ?
Thank you, best regards.
Luca



     
« Reply #1 on: October 22, 2008, 21:03:46 »
ideanet *
Posts: 4

Does anyone have configured a m0n0wall in filtered bridge mode on a Internet connection with static IP assigne via PPPOE ?
« Reply #2 on: October 23, 2008, 11:35:04 »
markb ****
Posts: 331

What is the configuration of the subnet assigned to you.  You only need to use the filtered bridge if the IPs assigned to you are in the same subnet as your WAN address.  If they are routing a separate subnet via your WAN IP address I believe that you have 2 options.  Proxy ARP where you set your WAN interface to provide replies for the IPs, or set up your opt1 interface on the routed subnet and give the PCs on that subnet external IPs with the gateway being the opt1 address.  You will then have to enable Advanced NAT to remove all automatic rules, add a rule to NAT your LAN and then setup your access rules.

hope this makes sense.
« Reply #3 on: October 24, 2008, 00:08:35 »
ideanet *
Posts: 4

The configuration it's the following.
subnet xxx.yyy.zzz.248
static IP for the router (received from pppoe auth) xxx.yyy.zzz.249
available static ip: xxx.yyy.zzz.250-254
broadcast: xxx.yyy.zzz.255
netmask: 255.255.255.248

I have configured my WAN port of m0n0wall in pppoe mode and I receive the static ip xxx.yyy.zzz.249
I have configured my m0n0 for the filtered bridge mode as reported on the link
http://doc.m0n0.ch/handbook/examples-filtered-bridge.html. The only difference it's that I don't have the colo's router reported in the example, because the gateway ip it's assigned directly to my port WAN of M0n0.
The WAN static ip it's assigned via pppoe and isn't entered in static mode.

The subnet it's the same on the WAN and on the OPT1...

Just a note: I have already configured few m0n0wall in filtered bridge mode with success, but the other times I have used the colo's router already configured with a DMZ (as the example on the M0n0 documentation).

 


« Last Edit: October 24, 2008, 00:12:38 by ideanet »
 
Pages: [1]
 
 
Powered by SMF 1.1.20 | SMF © 2013, Simple Machines