![]() |
Hello and Welcome from United States to the UNIX and Linux Forums! Thank You for Visiting and Joining Our Global Community.
|
|
google unix.com
|
|||||||
| Forums | Register | Forum Rules | Links | Albums | FAQ | Members List | Calendar | Search | Today's Posts | Mark Forums Read |
| IP Networking Learn TCP/IP, Internet Protocol, Routing, Routers, Network protocols in this UNIX and Linux forum. |
More UNIX and Linux Forum Topics You Might Find Helpful
|
||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| Protect your network with pfSense firewall/router | iBot | UNIX and Linux RSS News | 0 | 10-03-2008 04:30 AM |
| Set up your firewall with Firewall Builder | iBot | UNIX and Linux RSS News | 0 | 08-14-2008 04:30 AM |
| slave bind name resolution inquiry | marcpascual | Linux | 2 | 12-16-2007 01:39 PM |
| Performance inquiry...guestimate better approach | DreamWarrior | High Level Programming | 6 | 01-22-2007 12:57 PM |
| uniX iNQUIry from a newbie | youdexter | UNIX for Dummies Questions & Answers | 2 | 11-15-2006 11:57 AM |
![]() |
|
|
LinkBack | Thread Tools | Search this Thread | Rate Thread | Display Modes |
|
||||
|
Firewall / Network isolation inquiry
Good morning folks,
A good friend of mine has a network where every host has two paths to the file servers (two NICs & two networks for all hosts). Normally speaking, one network will be used for regular application traffic - license servers, itunes library, collaboration tools - while the other will be used for infrastructure traffic - AFS cluster, SNMP, etc. Currently, the application traffic is saturating both networks, resulting in poor AFP and NFS performance. Ideally, he'd like to firewall the traffic on the host - directing applications to use ports on 192.168.2, while allowing the higher bandwidth (mission critical) traffic to use 192.168.3 without being impacted by the collaboration stuff. Using the two example networks above, can you recommend what he might need to change / implement in order to isolate services in this fashion? - Avron |
|
||||
|
Currently, there is no hardware being employed to resolve this issue.
I was hoping to do this with the firewall built-in to MacOS. My friend's current network gear does not support this type of filtering. If it cannot be done with ipfw, I may need to compile ipfilter for him, or he'll need to reconsider upgrading his switch to something that supports this feature. ipfw ships with MacOS 10.5 or better. This is why my post was in "OS X (Apple)" rather than networking. |