Bridge Firewall
Posted: Thu Jul 07, 2005 12:17 pm
Hello!
I am interested how does the Bridge Firewall works. I have read the documentation, but theres still some questions remaining.
If there is for example 6 interface, and i want that 1,2,3,4,5 interfaces should not send ARP request to interface 6 except to 10.0.0.1 and 10.0.0.2 adresses.
How should i do it? /should i write to the firewall rule the mac adresses of 10.0.0.1 and 10.0.0.2?/
The problem was that i made a rule to
drop all arp
accept 10.0.0.1 arp
accept 10.0.0.2 arp and it didnt worked... if i used only one "accept" it was ok. and it seems that the order is important of the rules.
Thanks for help Gabor from Hungary.
I am interested how does the Bridge Firewall works. I have read the documentation, but theres still some questions remaining.
If there is for example 6 interface, and i want that 1,2,3,4,5 interfaces should not send ARP request to interface 6 except to 10.0.0.1 and 10.0.0.2 adresses.
How should i do it? /should i write to the firewall rule the mac adresses of 10.0.0.1 and 10.0.0.2?/
The problem was that i made a rule to
drop all arp
accept 10.0.0.1 arp
accept 10.0.0.2 arp and it didnt worked... if i used only one "accept" it was ok. and it seems that the order is important of the rules.
Thanks for help Gabor from Hungary.