On 8 Jan 2004 11:48:34 GMT, Paul Hutchings <(E-Mail Removed)> wrote:
>Both NICs will have public IP addresses but on different subnets, so no NAT
>is required, just the ability to have nice simple PIX style "source-
>destination-protocol" rules that allow traffic in and out.
That makes it easy then,
if you can hack a pix config, this is a no brainer
http://www.openbsd.org/faq/pf/index.html
Download and burn the boot ISO for 3.4 from here
ftp://ftp.plig.org/pub/OpenBSD/3.4/i386/cd34.iso
Takes about 20 mins to install it over a 512k internet connection, the
above site is one of the UK mirrors.
Make 3 changes to enable routing, packet filtering and firewall logging
reboot and you're ready to knock up a config in /etc/pf.conf.
greg
--
You do a lot less thundering in the pulpit against the Harlot
after she marches right down the aisle and kicks you in the nuts.