|
||||||||||
OK .. It's true that it works firewall + bridge, but only when diferent fisicall interfaces ( I tried to use vlans, but it doesnt work ), Traffic shapping should work, but I haven´t tried that yet. M0n0 doenst accept bridge LAN and WAN interface ( nedd to use OPT interface for that ), meaning you will need to have at least 3 interfaces. I have a setup planning that requires multiple bridged interfaces, but m0n0 doesn't do that yet ( maybe soon ? ) Also, I was needing to do a transparent firewall+traffic shapping AND redirect http traffic trought a proxy server ( squid on another box ). ----- Original Message ----- From: "Scott Wendrick" <scooter at uplogon dot com> To: "Jason J Ellingson" <jason at ellingson dot com> Cc: <m0n0wall at lists dot m0n0 dot ch> Sent: Friday, October 22, 2004 3:17 PM Subject: Re: [m0n0wall] Re: [m0n0wall] Transparent with firewall > Can you send me a copy of your config. I would like to test it out > > > I run a /28 network in complete transparent firewall mode (bridged WAN to > > OPT1 - enable filtered bridge). I have not tried traffic shaping on it > > though. > > > > - Jason > > > > ----- Original Message ----- > > From: Allan D. Piske +ADw-zyryz+AEA-terra.com.br+AD4- > > Subject: Re: +AFs-m0n0wall+AF0- Transparent with firewall > > Date: Fri, 22 Oct 2004 10:23:56 -05:00 > > > > Sure, I would like that features too, but it's not yet implemented. > > FreeBSD itselft can do it fine, let's hope that Manuel and the development > > team implement that soon. > > > > > > ----- Original Message ----- > > From: +ACI-Scott Wendrick+ACI- +ADw-scooter+AEA-uplogon.com+AD4- > > To: +ACI-Jason Brunk+ACI- +ADw-jbrunk+AEA-wthosting.com+AD4- > > Cc: +ADw-scooter+AEA-uplogon.com+AD4AOw- > > +ADw-m0n0wall+AEA-lists.m0n0.ch+AD4- > > Sent: Thursday, October 21, 2004 1:04 PM > > Subject: RE: +AFs-m0n0wall+AF0- Transparent with firewall > > > > > > +AD4- Im hoping that this has already been implemented +ADs-). I have a > > full class > > +AD4- c that i would like to put behind a firewall without using nat and > > be able > > +AD4- to filter the ports and shape bandwidth. I hope m0n0wall will be > > able to > > +AD4- do this. M0n0wall seems to be a great product and the community > > support > > +AD4- here seems to be by far the best I have seen. > > +AD4- > > +AD4- +AD4- This is a good question. Here at my office I have an openbsd > > box > > running > > +AD4- +AD4- pf > > +AD4- +AD4- that is transparent and it works awesome, I think doing > > something like > > +AD4- +AD4- this > > +AD4- +AD4- with m0n0wall would be cool. I would be more towards, can you > > redirect > > +AD4- +AD4- outgoing packets. On our transparent box we run squid-cache > > and I would > > +AD4- +AD4- like to be able to do that with m0n0wall. I would like to put > > a small > > HD > > +AD4- +AD4- in > > +AD4- +AD4- the box and have m0n0 redirect port 80 packets outbound to the > > +AD4- +AD4- squid-cache. > > +AD4- +AD4- Anyone done this one yet? > > +AD4- +AD4- > > +AD4- +AD4- -----Original Message----- > > +AD4- +AD4- From: Scott Wendrick +AFs-mailto:scooter+AEA-uplogon.com+AF0- > > +AD4- +AD4- Sent: Thursday, October 21, 2004 10:09 AM > > +AD4- +AD4- To: m0n0wall+AEA-lists.m0n0.ch > > +AD4- +AD4- Subject: +AFs-m0n0wall+AF0- Transparent with firewall > > +AD4- +AD4- > > +AD4- +AD4- Is there a way the M0n0wall can be setup as a transparent > > firewall with > > +AD4- +AD4- real > > +AD4- +AD4- ip addresses on both sides of the interfaces(NO NAT). I am > > very new to > > +AD4- +AD4- the > > +AD4- +AD4- project and hopefully you guys/girls can point me in the right > > direction. > > +AD4- +AD4- > > +AD4- +AD4- Thanks > > +AD4- +AD4- > > +AD4- +AD4- Scott > > +AD4- +AD4- > > +AD4- +AD4- > > +AD4- +AD4- > > --------------------------------------------------------------------- > > +AD4- +AD4- To unsubscribe, e-mail: m0n0wall-unsubscribe+AEA-lists.m0n0.ch > > +AD4- +AD4- For additional commands, e-mail: > > m0n0wall-help+AEA-lists.m0n0.ch > > +AD4- +AD4- > > +AD4- +AD4- > > +AD4- +AD4- > > +AD4- > > +AD4- > > +AD4- > > +AD4- > > --------------------------------------------------------------------- > > +AD4- To unsubscribe, e-mail: m0n0wall-unsubscribe+AEA-lists.m0n0.ch > > +AD4- For additional commands, e-mail: m0n0wall-help+AEA-lists.m0n0.ch > > +AD4- > > +AD4- > > +AD4- Esta mensagem foi verificada pelo E-mail Protegido Terra. > > +AD4- Scan engine: VirusScan / Atualizado em 20/10/2004 / Verso: 1.5.2 > > +AD4- Proteja o seu e-mail Terra: http://www.emailprotegido.terra.com.br/ > > +AD4- > > +AD4- E-mail classificado pelo Identificador de Spam Inteligente Terra. > > +AD4- Para alterar a categoria classificada, visite > > +AD4- > > http://www.terra.com.br/centralunificada/emailprotegido/imail/imail.cgi?+-+AF8-u+AD0-zyryz+ACYAXw-l+AD0-1098375267.189387.2600.pamplona.terra.com.br > > +AD4- > > > > > > --- > > Outgoing mail is certified Virus Free. > > Checked by AVG anti-virus system (http://www.grisoft.com). > > Version: 6.0.779 / Virus Database: 526 - Release Date: 20/10/2004 > > > > > > --------------------------------------------------------------------- > > To unsubscribe, e-mail: m0n0wall-unsubscribe+AEA-lists.m0n0.ch > > For additional commands, e-mail: m0n0wall-help+AEA-lists.m0n0.ch > > > > > > --------------------------------------------------------------------- > > To unsubscribe, e-mail: m0n0wall dash unsubscribe at lists dot m0n0 dot ch > > For additional commands, e-mail: m0n0wall dash help at lists dot m0n0 dot ch > > > > > > > > --------------------------------------------------------------------- > To unsubscribe, e-mail: m0n0wall dash unsubscribe at lists dot m0n0 dot ch > For additional commands, e-mail: m0n0wall dash help at lists dot m0n0 dot ch > > > Esta mensagem foi verificada pelo E-mail Protegido Terra. > Scan engine: VirusScan / Atualizado em 20/10/2004 / Versão: 1.5.2 > Proteja o seu e-mail Terra: http://www.emailprotegido.terra.com.br/ > > E-mail classificado pelo Identificador de Spam Inteligente Terra. > Para alterar a categoria classificada, visite > http://www.terra.com.br/centralunificada/emailprotegido/imail/imail.cgi?+_u=zyryz&_l=1,1098473038.957098.657.laranjal.terra.com.br,6260,Des15,Des15 > --- Outgoing mail is certified Virus Free. Checked by AVG anti-virus system (http://www.grisoft.com). Version: 6.0.779 / Virus Database: 526 - Release Date: 19/10/2004 |