The UNIX and Linux Forums  
Hello and Welcome from United States to the UNIX and Linux Forums! Thank You for Visiting and Joining Our Global Community.

Go Back   The UNIX and Linux Forums > Special Forums > IP Networking
.
google unix.com



IP Networking Learn TCP/IP, Internet Protocol, Routing, Routers, Network protocols in this UNIX and Linux forum.

More UNIX and Linux Forum Topics You Might Find Helpful
Thread Thread Starter Forum Replies Last Post
S-262: Cisco IOS Multicast Virtual Private Network (MVPN) Data Leak iBot Security Advisories (RSS) 0 04-10-2008 11:10 AM
S-243: Cisco IOS Virtual Private Dial-up Network Denial of Service Vulnerability iBot Security Advisories (RSS) 0 03-27-2008 04:40 PM
Need help setting up a home solaris private network Kongowea UNIX for Dummies Questions & Answers 1 02-05-2008 01:19 PM
Able to ping server's private network *Jess* IP Networking 3 01-10-2008 08:45 PM
Private network *Jess* IP Networking 10 11-23-2006 04:41 AM

Closed Thread
English Japanese Spanish French German Portuguese Italian Dutch Swedish Russian Norwegian Hungarian Hebrew Danish Powered by Powered by Google
 
LinkBack Thread Tools Search this Thread Rate Thread Display Modes
  #1 (permalink)  
Old 12-04-2002
norsk hedensk norsk hedensk is offline Forum Advisor  
Registered User
  
 

Join Date: Jul 2002
Location: new york
Posts: 1,025
private network to private network gateway

i have one private network with one ip address, and i have a seperate network on a seperate ip address.
now, each network is behind a firewall/router. now what i want to do is be able to access one server on the second network from a computer on the first., but with the private ip address, (this is so i can use insecure services on both networks from one computer which can be on either network.) have i lost anyone? ok so what i want to do is this, i want to throw together another computer, i dunno what its gonna run, maybe a single floppy unix varient, so i can run a diskless machine, it will have 2 nic's and will be connected to the router of each network. now i know there can be no duplicate ip address, but i am not sure how to set up the gateway. will i have to change settings in each of the existing routers on the 2 networks? please help!

hmm i re read that and I got lost, maybe this will help:


#internet#
network 1--^ ^---network 2
^------???-------^
those question marks represent "what do i do??"
  #2 (permalink)  
Old 12-04-2002
TioTony's Avatar
TioTony TioTony is offline Forum Advisor  
Bit Pusher
  
 

Join Date: Oct 2001
Location: Southern California
Posts: 332
The easiest solution would be to forget about your machine attached to both firewalls and just configure the firewalls to allow what you want. There are several options, but basically you would configure one or both firewalls to create a tunnel between the two firewalls over the internet. The exact details will depend on your firewall vendor but would go like this:

PC1--FW1=====FW2--PC2

The === would be your tunnel. Depending on your security requirements you may want to make FW2 a VPN endpoint so you can connect from anywhere on the internet to the LAN behind it after you give some credentials. If this is too risky, then you can configure FW1 and FW2 to have a permanent tunnel between the two of them so only PCs belonging to LAN1 or LAN2 can talk to each other and there is no (well maybe a little) chance of anyone not on LAN1 or LAN2 connecting to LAN1 or LAN2 via FW1 or FW2.

Hope this helps. This is basically what you were trying to accomplish with your third PC connected to both Firewalls but there is not need as most firewalls have the functionallity to do this and it is much easier to implement.
  #3 (permalink)  
Old 12-05-2002
norsk hedensk norsk hedensk is offline Forum Advisor  
Registered User
  
 

Join Date: Jul 2002
Location: new york
Posts: 1,025
thanks! i hadnt really thought of tunnling it, i guess what i could do is just configure the firewall to accept request from my ip addresses only, i guess as long as no one knows that these two networks are related theres no problem with people trying to get in that way, by spoofing my ip address. thats probably what im gonna do seeing as im out of spare computer parts! thanks again.
Closed Thread

Bookmarks

Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On




All times are GMT -4. The time now is 09:58 AM.


Powered by: vBulletin, Copyright ©2000 - 2006, Jelsoft Enterprises Limited. Language Translations Powered by .
vBCredits v1.4 Copyright ©2007 - 2008, PixelFX Studios
The UNIX and Linux Forums Content Copyright ©1993-2009. All Rights Reserved.Ad Management by RedTyger

Content Relevant URLs by vBSEO 3.2.0