[lug] DHCP surrogate?

Peter Hutnick peter-lists at hutnick.com
Wed Aug 7 09:28:32 MDT 2002


>>> bridge/firewall/filter

>> Beyond that, your math seems to be off, 3 IPs, 3 PCs and a router . .
>> .
>
> Nope, 3 IPs, 3 PCs, 1 bridge. Both NICs on a bridge can operate without
> any IP address at all.

I don't know why I saw "router" when it wasn't there . . .

>> As for trying to hold onto an IP with the router you /could/ just put
>> the machine that needs the "stable" IP on a private IP, allow the
>> router to take one of the DHCP addresses and just forward the ports
>> you need.
>
> I would forward if I could do a 1:1 NAT, and not just a passive
> masquerade type connect, on all 3 workstations. What I could do is
> switch the bridge to instead be a router; then I would have to figure
> out how to make the router appear to have 3 MAC addresses on a single
> ethernet card, so it would do DHCP for all 3 MAC addresses, followed by
> 1:1 forwarding. I believe this would be non-trivial, or even possible.

If that box is going to be a firewall anyway I don't see any reason that
you need all that.  Just forwarding (is that the right term?) the ports
you need on a 1 for 1 (as in 80->80, as opposed to 80->8080) basis should
do the trick.

-Peter





More information about the LUG mailing list