[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Nat / masq -- only 1 eth, can I use alias?



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On Wed, May 21, 2003 at 07:54:12AM +0800, Miranda, Joel Louie M wrote:
> Hello, I had this problem. I only use 1 ethernet card. Can I use this?

It's possible, though it's not easy to set up, nor is it a bright idea
for security reasons.  Since both IP networks are sharing a collision
domain, you can have as much stateful firewalling as you want but a
skilled attacker will be able to just waltz on past like the NAT box
didn't exist.

Just pick up another NIC.  In most parts of the world, they're pretty
cheap and common these days.  (I've found more than one working NIC in
the streets locally!)

- -- 
 .''`.     Baloo Ursidae <baloo@ursine.dyndns.org>
: :'  :    proud Debian admin and user
`. `'`
  `-  Debian - when you have better things to do than fix a system
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.2 (GNU/Linux)

iD8DBQE+yz0IJ5vLSqVpK2kRAsFqAJwOP/sm4FLdJjhxSsFlfpwu3K/1zgCgw2ZC
qeCXXK63VfzURjwuL3JO/kk=
=zF5r
-----END PGP SIGNATURE-----



Reply to: