Replace Sonicwall with linux box using iptables


 
Thread Tools Search this Thread
Special Forums Cybersecurity Replace Sonicwall with linux box using iptables
# 1  
Old 04-26-2011
Replace Sonicwall with linux box using iptables

Hello,
I am currently using a Sonicwall firewall to protect a class C network of public IP addresses. The sonicwall allows me to specify which IP's will be on the DMZ port and the remainder are on the LAN port by default. I would like to replace this Sonicwall with a linux box and use iptables to firewall my network. However, I am as yet unable to see how to use my single class C network with both a DMZ and LAN without subnetting the Class C. I would prefer to specify a range of IP's to be on the DMZ in order to mimic the existing sonicwall. Any input would be greatly appreciated. -Thanks
# 2  
Old 04-26-2011
First, the term Class C is a bit obsolete, as any IP range can be subnetted to any mod 2 size with modern devices and software.

Second, it is often fine to use free, unroutable IP's like 10.x.x.x inside the outer router, so do not chop up your bought nets unnecessarily.
# 3  
Old 04-26-2011
Thanks for the reply, DGPickett. I agree, the term Class C is a bit obsolete. We have a set of IP's, publicly routable from

xxx.yyy.zzz.1 - xxx.yyy.zzz.254

For various reasons, we do not want to use a private address space inside the firewall immediately (although I hope to move to that scheme in the future).

In the short term, I am looking for how IPtables can be used to have some of the xxx.yyy.zzz addresses on the DMZ port and the remainder on the LAN port, without subnetting the xxx.yyy.zzz network.

Regards,
# 4  
Old 04-26-2011
Well, two nets is two nets, and a firewall is a router. Maybe you can find a way to make it a bridge. Problem is, bridge traffic not normally presented to IP layer. I think your private era has started. With over 16 million addresses, no need to save them for the future. They actually improve security, making those hosts not addressable from the internet.
Login or Register to Ask a Question

Previous Thread | Next Thread

10 More Discussions You Might Find Interesting

1. How to Post in the The UNIX and Linux Forums

Copying , renaming the file from windox box and ftp to Linux box

Hello my dear friends, Two file are auto generated from mon - fri at different directories on same windows box.Every day i have to copy the file, rename it (specific name)and ftp it to linux box specified directory. is it possible to automate this process,If yes this has to be done from windows... (1 Reply)
Discussion started by: umesh yadav
1 Replies

2. Red Hat

How to access redhat Linux box graphically from windows box?

Hi I have a linux box and need to access from windows graphically # uname -a Linux pc-l416116 2.6.18-155.el5 #1 SMP Fri Jun 19 17:06:47 EDT 2009 i686 i686 i386 GNU/Linux What components do I need to install on Linux and windows to do that? TIA (6 Replies)
Discussion started by: magnus29
6 Replies

3. UNIX for Dummies Questions & Answers

Mounting Linux box to Linux box

Hi, I've been able to mount my linux box to a windows machine, but I can't seem to mount my linux box to another linux box I have. (I know I could scp, but for other reasons I need to do it this way) Samba is installed. Here is an example where I mount to a Win machine.--> works fine mount... (12 Replies)
Discussion started by: jdilts
12 Replies

4. Shell Programming and Scripting

Need a Script , we are having Linux box

HI I need help on developing 2 scripts as mentioned below. One way process -> We can get files of 01, 02, 07 record types (Here we need to keep a filter to read the first 2 characters in the file and if they are equal to 01 or 02 we need to do the below process and if its 07 we need to... (2 Replies)
Discussion started by: nanduedi
2 Replies

5. Linux

How to find remote Linux box login account without login in to that box?

Hi, How to find remote Linux box login account without login in to that box? I don't have login account at my remote Linux box. But I need who are all having login account. How do I findout? Thanks, --Muthu. (3 Replies)
Discussion started by: Muthuselvan
3 Replies

6. Shell Programming and Scripting

FFMPEG in linux box

Hi all, I have successfully used ffmpeg.exe in windows. But i dont know how to use it in linux:confused:. When i tried running a java program in linux using ffmpeg, I am getting, the following error even after having that ffmpeg.exe in my classpath: "java.io.IOException: java.io.IOException:... (3 Replies)
Discussion started by: ananthi_ku
3 Replies

7. Linux

ipv6 on a linux box

how to enable an ipv6 address on a linux pc? thanks in advance (3 Replies)
Discussion started by: sunittaneja
3 Replies

8. Shell Programming and Scripting

Script to Reboot a linux box from a windows box

HI All, I need a script to reboot a linux box from a windows box. The script needs to run automatically whenever a sitescope alerts with an error message. Have searched for this in the forums, but could not get something relative. Pls. let me know the various alternatives we have to do... (2 Replies)
Discussion started by: Crazy_murli
2 Replies

9. UNIX for Advanced & Expert Users

Xconfigurator on Linux box.

Folks, I am loosing X configurations once I restart the linux box. Same is true with ftp and telnet services. Any clues ? I am trying RedHat 7.2, it sucks btw !! (3 Replies)
Discussion started by: amol
3 Replies

10. UNIX for Dummies Questions & Answers

how to configure a linux box as a firewall using iptables

I have already compiled the kernel and configured it to run as a firewall. My computer has 2 NICs and is on two seperate networks. I can ping both networks from my computer, but workstations on one network can not ping workstations on the other. What Scripts or commands do I need to install ? (2 Replies)
Discussion started by: Deuce
2 Replies
Login or Register to Ask a Question