The UNIX and Linux Forums  


Go Back   The UNIX and Linux Forums > Special Forums > IP Networking
.
google unix.com



IP Networking Learn TCP/IP, Internet Protocol, Routing, Routers, Network protocols in this UNIX and Linux forum.

More UNIX and Linux Forum Topics You Might Find Helpful
Thread Thread Starter Forum Replies Last Post
Protect your network with pfSense firewall/router iBot UNIX and Linux RSS News 0 10-03-2008 05:30 AM
Set up your firewall with Firewall Builder iBot UNIX and Linux RSS News 0 08-14-2008 05:30 AM
slave bind name resolution inquiry marcpascual Linux 2 12-16-2007 01:39 PM
Performance inquiry...guestimate better approach DreamWarrior High Level Programming 6 01-22-2007 12:57 PM
uniX iNQUIry from a newbie youdexter UNIX for Dummies Questions & Answers 2 11-15-2006 11:57 AM

Closed Thread
English Japanese Spanish French German Portuguese Italian Dutch Swedish Russian Norwegian Hungarian Hebrew Danish Bulgarian Greek Powered by Powered by Google
 
LinkBack Thread Tools Search this Thread Rate Thread Display Modes
  #1 (permalink)  
Old 03-23-2009
avronius avronius is offline VIP Member  
VIP Member
  
 

Join Date: Apr 2008
Location: Calgary
Posts: 305
Firewall / Network isolation inquiry

Good morning folks,

A good friend of mine has a network where every host has two paths to the file servers (two NICs & two networks for all hosts).

Normally speaking, one network will be used for regular application traffic - license servers, itunes library, collaboration tools - while the other will be used for infrastructure traffic - AFS cluster, SNMP, etc.

Currently, the application traffic is saturating both networks, resulting in poor AFP and NFS performance. Ideally, he'd like to firewall the traffic on the host - directing applications to use ports on 192.168.2, while allowing the higher bandwidth (mission critical) traffic to use 192.168.3 without being impacted by the collaboration stuff.

Using the two example networks above, can you recommend what he might need to change / implement in order to isolate services in this fashion?

- Avron
  #2 (permalink)  
Old 04-05-2009
Yogesh Sawant's Avatar
Yogesh Sawant Yogesh Sawant is offline Forum Staff  
Part Time Moderator and Full Time Dad
  
 

Join Date: Sep 2006
Location: Rossem, Tazenda
Posts: 1,086
this sounds like a networking problem rather than something to do with OX, so i'm moving it to the appropriate forum. reply if otherwise.
  #3 (permalink)  
Old 04-05-2009
septima.pars's Avatar
septima.pars septima.pars is offline
Registered User
  
 

Join Date: Jan 2009
Location: Chicago
Posts: 31
Hello,


I am curious about this issue ...

Is there some kind of gateway device being used? (as in dedicated for traffic "shaping"?
  #4 (permalink)  
Old 04-06-2009
avronius avronius is offline VIP Member  
VIP Member
  
 

Join Date: Apr 2008
Location: Calgary
Posts: 305
Currently, there is no hardware being employed to resolve this issue.

I was hoping to do this with the firewall built-in to MacOS. My friend's current network gear does not support this type of filtering.

If it cannot be done with ipfw, I may need to compile ipfilter for him, or he'll need to reconsider upgrading his switch to something that supports this feature.

ipfw ships with MacOS 10.5 or better. This is why my post was in "OS X (Apple)" rather than networking.
  #5 (permalink)  
Old 04-06-2009
septima.pars's Avatar
septima.pars septima.pars is offline
Registered User
  
 

Join Date: Jan 2009
Location: Chicago
Posts: 31
hello there,

if you find the issue please post here.

regards,
AdrieL
Closed Thread

Bookmarks

Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On




All times are GMT -4. The time now is 11:49 AM.


Powered by: vBulletin, Copyright ©2000 - 2006, Jelsoft Enterprises Limited. Language Translations Powered by .
vBCredits v1.4 Copyright ©2007 - 2008, PixelFX Studios
The UNIX and Linux Forums Content Copyright ©1993-2009. All Rights Reserved.Ad Management by RedTyger

Content Relevant URLs by vBSEO 3.2.0