OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
3-legged network setup

From: andy (tireseasonetel.com)
Date: Mon Feb 21 2005 - 12:20:20 CST


I am attempting to set up a 3-legged home network with OBSD as the
firewall. The firewall box has 2xNiCs: 1 for the DMZ and the other for
my LAN. I will dial up to my ISP using a 56K modem attached to the
firewall. My ISP uses the PAP/CHAP and dynamically assigns an IP
address. I do not intend running either a dhcp nor a dns on my network.
I have set the following at install:
LAN-facing NIC (vr0): 10.0.0.1 hostname mymachine
DMZ-facing NIC (vr1): 10.254.0.1 hostname mymachine
DNS domain name? org
DNS nameserver? none
Default IPv4 route? none (there are 3 options here - IPv4 address,
dhcp, or none)

Then invoking ppp interactively:

ppp ON mymachine>set device /dev/cua00
ppp ON mymachine>set authnam myispname
ppp ON mymachine>set authkey myisppasswd
ppp ON mymachine>term

atz
OK
atdt1234567890
ppp
Ppp
PPp
PPP

Then, I set ppp into the background by ^Z and bg and enter lynx at the
CLI and receive an error that lynx cannot open the page/can't connect
with the remote server.

I have psent the better part of the afternoon reading man ppp,
re-reading the relevant sections out of both "Building Linux & OBSD
firewalls" and "Secure architectures with OBSD" and although these are
probably really good books, right now they aren't telling me anything
useful, and if anything the "Building" book is dated wrt the scripts
that are exampled.

I'm stuck and really don't know how to progress this any further. The
most recent installation, with the above settings, is about my fifth
today, and even though I am changing some of my responses to the DNS
nameserver and default IPv4 route questions, I am still getting
diddly-squat!!!

Anyone want to step up and give me some pointers to figure out what I am
missing/messing up please?

TIA

Andy

--
+++++++++++++++++++++++++++++++++++++++++++
Reclaim Your Inbox!
http://www.mozilla.org/products/thunderbird