[rescue] Putting an insecure machine on a network

Sheldon T. Hall shel at tandem.artell.net
Wed Mar 22 10:17:57 CST 2006


 Mike F says ...
> 
> Ah... I knew I should've mentioned ipnat since you're NAT'ing the
> 10.10.10.0/24 network .
> 
> So, you need ipnat.conf set up something like:
> 
> map le0 10.10.10.0/24 -> 192.168.0.20 portmap tcp/udp 30000:60000 
> map le0 10.10.10.0/24 -> 192.168.0.20

Just to confirm the above...

192.168.0.20 is the LAN interface of the Sun box, connected to the gateway
(192.168.0.1) and is the means of access to the box locally (via telnet,
etc.), so this won't hose that side, right?

10.10.10.1 is the "insecure LAN" we want to put the insecure laptop on, and
this will provide the means for the packets from the laptop (10.10.10.2) to
traverse from the insecure LAN to the normal one, right?

The insecure laptop uses MS PPTP networking, and this will provide the
required reverse path for packets from outside to find the laptop, right?

Just checking!

-Shel



More information about the rescue mailing list