*BSD News Article 78229


Return to BSD News archive

Path: euryale.cc.adfa.oz.au!newshost.carno.net.au!harbinger.cc.monash.edu.au!munnari.OZ.AU!news.mel.connect.com.au!news.mira.net.au!news.vbc.net!garlic.com!news.scruz.net!noos.hooked.net!www.nntp.primenet.com!nntp.primenet.com!howland.erols.net!newsfeed.internetmci.com!in3.uu.net!news.gtn.com!RRZ.Uni-Koeln.DE!news.duesseldorf.ecrc.net!news.hamburg.ecrc.net!news.hamburg.pop.de!news.braunschweig.pop.de!news.bs.priconet.de!xmp.priconet.de!cayman.priconet.de!marc
From: marc@cayman.priconet.de (Marc Zimmermann)
Newsgroups: comp.unix.bsd.freebsd.misc
Subject: Re: IP forwarding
Date: 12 Sep 1996 19:01:22 GMT
Organization: Priconet, e.V.
Lines: 28
Message-ID: <519mm2$euk@cayman.priconet.de>
References: <513hrs$ca@anorak.coverform.lan>
NNTP-Posting-Host: cayman.priconet.de
X-Newsreader: TIN [version 1.2 PL2]

Brian Somers (brian@awfulhak.demon.co.uk) wrote:
> On a machine w/ 3 interfaces, is there any way to forward IP between two
> of them, but not the third ?  For example, I have two subnets & a ppp
> to the internet - I want the subnets to talk, but not send crap onto
> the 'net.

No problem. Build a kernel with ipfw in it. Then use ipfw like this

ipfw add 100 deny all from any to any in via iface

(maybe you  will have to  specify  a keyword  before the "in",  cannot
tell, right now.)

Works supern, here-

Cheers,
--
 
    _______________________________________ 
    \_______________________________  / / /   Marc Zimmermann
                                   / /_/_/__________________________________
        M.Zimmermann@priconet.de  /________________________________________/
        zimmerma@ibr.cs.tu-bs.de
 
              ... ceterum censeo MSDOS esse delendam ...

M: Shit! -- U: What? -- M: MS-DOS! -- U: No! -- M: Yes! -- U: Shit!