ciphergoth: (tree)
[personal profile] ciphergoth
Quick geek help sought with making sure I understand IP routing properly.

Zen have allocated me the static IP address block 82.68.129.72/29. Of these eight addresses, one is the network address, one is the broadcast address.

I've fitted an ADSL card to my main PC, saltationism. So it has two interfaces: an ADSL interface and a LAN one. That's two more addresses taken. So there are four left: I can give up to four more machines on the LAN static IP addresses.

The thing that worries me is that if the subnet for the LAN is 82.68.129.72/29, then can I assign an address from that subnet to the ADSL card? If I do, will my LAN be able to route to that address? If not, what should I do instead?

Date: 2003-10-26 01:37 pm (UTC)
From: [identity profile] simm42.livejournal.com
You can deffinatly have the linux gateway running the same IP for the ppp0 and eth0 - you just have to get your IP tables rules right - I have figured something similar out at work - but only done it once so it would probably take me the same time again, with lots of call to man.

Another option you have is keeping a 192.168. with a 255.255.255.0 netmask home network, giving eth0 the usual .1 on router and whatever it gets on the ADSL, though then just use IP tables to re route each address on the ADSL, either one to one, or one to many to machines on the inside. What you may want to do is one to one all the available IP addresses, then use your gateway IP address and masquerade that one through to any machines you dont want to give one to one. This gives protection to them, lets them log onto the net, but makes anyone getting into them a bit harder.

That way from your 8 you lose one to the network address, one to broadcast, you have 1 for your gateway machine, which is also used for any machines sitting behind IP masquerading and then you have the other 5 IP addresses all available.

This is what I have been planning to do myself as once I live in an area that can have ADSL I plan to get zen, unfortunatly unless they can persuade the new forest ponies that they want to be online it will probably be after I next move house - so may be a while.

You probably also want to set up a domain registreation for you home network, put DNS (BIND being the obvious choice, though I use dnsmasq as a nice light weight alternative) on your gateway so you can name your machines, and remember to put an IP tables rule in that if you are requesting one of the external addresses for your network it actually routes it internally so you get network rather than broadband bandwidth.

Should hopefully make it to Whitby on the friday night - though we wont be hitting the main gig. Possibly being coming on the saturday with Jareth, will depend how he is feeling, he's had a bit of a cold and at 4 weeks old we are being a little careful with him.

Might see you around

Simon

Profile

ciphergoth: (Default)
Paul Crowley

January 2025

S M T W T F S
   1234
5678 91011
12131415161718
19202122232425
262728293031 

Most Popular Tags

Style Credit

Expand Cut Tags

No cut tags