A simplified scheme. m0n0 m0n0 Generic PC 1.3b18, 2 network cards LAN - fxp0 IP 192.168.1.5/24 WAN - fxp1 IP 193.10.20.30 (static)
At the interface fxp1 (WAN port), creating a VLAN tag 20 This will be a OPT1 IP 10.24.1.250/24 The switch add port is connected to "WAN" on VLAN 20
Rules of the firewall to allow access from the LAN to the network OPT1. And do not get access. I do not understand where to look? NAT? In general, you can create a Vlan on the WAN port?
|