[rescue] Putting an insecure machine on a network

der Mouse mouse at Rodents.Montreal.QC.CA
Tue Mar 21 19:45:52 CST 2006


> After an appaling amount of fooling around, I've got this:

> Insecure laptop on 10.10.10.2, connected to
> Sun's hme0 on 10.10.10.1, in the same box as
> Sun's le0 on 192.168.0.20, which is on a LAN with
> Gateway to 'net on 192.168.0.1.

> The laptop can ping 10.10.10.1 and 192.168.0.20 ("far side" of Sun
> box), but not anything else on 192.168.0.0/24.  Laptop cannot ping
> 192.168.0.1.  No ipfilter rules are in place, the ipf.conf file is
> all comments.

> I'm obviously missing something, but what?

Routing, maybe?  Do the 192.168.0.* boxes other than .20 know to route
10.10.10.[12] to 192.168.0.20?  If not, there's not much hope of
packets making it back to the laptop.

If the default route points to 192.168.0.1, it should be enough to
teach that machine to route 10.10.10.0/30 to 192.168.0.20.

/~\ The ASCII				der Mouse
\ / Ribbon Campaign
 X  Against HTML	       mouse at rodents.montreal.qc.ca
/ \ Email!	     7D C8 61 52 5D E7 2D 39  4E F1 31 3E E8 B3 27 4B



More information about the rescue mailing list