On Fri, 28 Jan 2005 08:49:22 -0500, James Knott
<(E-Mail Removed)> wrote:
>GS wrote:
>
>> If I install extra NIC card and enable firewall from services (service
>> iptables start) then PC acts as a firewall inbetween my cable modem and
>> switch right?. do I have to do anything special?. Thanks.
>
>You could, but it's easier and more secure to use one of those cheap
>firewall/router boxes. Also, if you add a 2nd NIC, that computer has to be
>on, for the others to access the internet.
People who really should know better keep recommending "those cheap
hardware firewall/boxes". They are neither - they are a hardware NAT
layer, with bugs. They don't do routing, and they are not
particularly good as firewalls. They certainly will cause you grief if
you're looking to do anything past what a windows user would be
expected to want (browse from multiple computers.).
You cannot run virtual domains on apache from behind one, even using
the so-called DMZ, for example. There are also issues with running a
simple apache server behind one if you're trying to do anything but
simple text. Nor will a mail server work properly without you doing
some peculiar configuration dances involving chicken blood.
Calling those things a router is as bad as the "Netscape web
accelerater service" - otherwise known as "configuring squid
properly".
Mike-
--
Mornings: Evolution in action. Only the grumpy will survive.
--
Please note - Due to the intense volume of spam, we have installed site-wide spam
filters at catherders.com. If email from you bounces, try non-HTML, non-encoded,
non-attachments.
----== Posted via Newsfeeds.Com - Unlimited-Uncensored-Secure Usenet News==----
http://www.newsfeeds.com The #1 Newsgroup Service in the World! 120,000+ Newsgroups
----= East and West-Coast Server Farms - Total Privacy via Encryption =----