Re: SNAT or MASQUERADE?
On Sat, 1 Dec 2001, David B Harris wrote:
> On Sun, 2 Dec 2001 11:36:20 +1000,
> email@example.com wrote:
> SNAT would be. However, you better make sure that each time the IP
> address of your interface changes, your firewall script runs. You could
> do this in Debian by putting your firewall script in /etc/ppp/ip-up.d/.
> But also please keep in mind that your firewall rules should be put in
> place *before* any external interfaces are brought on-line.
Isnt this assuming that the internet connection uses ppp?
Cablemodem, for instance, doesnt use ppp at all - a fact that seems to
have escaped the maintainer of the dhcpcd package too. How would one solve
this problem in the case of cablemodem?