Portál AbcLinuxu, 10. května 2025 08:22
Planuju 6 IP adres pres ADSL pppoe.
Mam linux Router/Firewall/PPPoE, pak mam Netgear managed 24 port switch, nakonec servery.
Planuju mit 1 server pro hosting, 1 pro zabbix monitoring system (pro externi hosty), jeden server ftp, 1 IP do vnitrni site, pak neco vymyslim pro ty dalsi. Mozna by se mi libilo mit zvlast SQL database pro vsechny apache servery.
Tady jsou me otazky:
Diky pane Petre za vasi odpoved.
2.) Firewall na pripojeni cele site bych rad udelal, ale to prave zavisi na tom PPPoE. A tam prave nevim jak na to . Kdyz by se dalo udelat 6 PPPoE spojeni na hlavnim firewallu a pak to nejak routovat/bridgovat na servery, tak pak ma firewall do cele site vyznam. Pokud bych musel mit PPPoE na kazdem serveru, tak pak hlavni firewall vyznam nema, jelikoz to pres nej nepujde. Teda jestli se nemylim.
Mam 100KB/s upload. Myslim,ze to je OK. Nebude to nejak specielne zatizene.
Jeste jednou poprosim, jestli nekdo nevi jak na vice IP adres pres ADSL - PPPoE?
Dostal jsem blok 8-mi IP adres, ale porad nevim, jak na to?
Do ted jsem mel statickou IP, a jeste porad mam 60.241.250.129
Moc informaci jsem nedostal, ale poslali mi toto mailem
Please find (8) Additional IPs assigned 60.241.247.216 to 60.241.247.223 Netmask 255.255.255.248
Nevim jestli hadam dobre, ale mam tedy asi tu prvni variantu. Nebo se zeptam jinak, jak poznam, jakou mam variantu.
Diky moc za pomoc.
Tak jsem se trosku spletl v tech cislech. Moje stavajici je 60.241.250.130
Nove pridelene:
Please find (8) Additional IPs assigned 60.241.247.208 to 60.241.247.215 Netmask 255.255.255.248.
Jeste bych se te rad zeptal na nasledujici vec. Ted mam na routeru PPPoE na tu adresu 60.2141.250.130.
Jeste tady vypis ifconfig
, aby jsi mel prehled co ted mam nastavene na routeru. eth0 vede do ADSL modemu, eth1 lokalni sit.
eth0 Link encap:Ethernet HWaddr 00:02:B3:B7:68:9F inet addr:192.168.10.254 Bcast:192.168.10.255 Mask:255.255.255.0 inet6 addr: fe80::202:b3ff:feb7:689f/64 Scope:Link UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1 RX packets:1037514 errors:0 dropped:0 overruns:0 frame:0 TX packets:998785 errors:0 dropped:0 overruns:0 carrier:0 collisions:0 txqueuelen:1000 RX bytes:789289242 (752.7 MiB) TX bytes:334887421 (319.3 MiB) eth1 Link encap:Ethernet HWaddr 00:05:1C:1F:1F:C3 inet addr:192.168.30.254 Bcast:192.168.30.255 Mask:255.255.255.0 inet6 addr: fe80::205:1cff:fe1f:1fc3/64 Scope:Link UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1 RX packets:999882 errors:0 dropped:0 overruns:0 frame:0 TX packets:1029467 errors:0 dropped:0 overruns:0 carrier:0 collisions:0 txqueuelen:1000 RX bytes:329372674 (314.1 MiB) TX bytes:782023579 (745.7 MiB) Interrupt:177 Base address:0xc400 lo Link encap:Local Loopback inet addr:127.0.0.1 Mask:255.0.0.0 inet6 addr: ::1/128 Scope:Host UP LOOPBACK RUNNING MTU:16436 Metric:1 RX packets:9 errors:0 dropped:0 overruns:0 frame:0 TX packets:9 errors:0 dropped:0 overruns:0 carrier:0 collisions:0 txqueuelen:0 RX bytes:664 (664.0 b) TX bytes:664 (664.0 b) ppp0 Link encap:Point-to-Point Protocol inet addr:60.241.250.130 P-t-P:10.20.20.243 Mask:255.255.255.255 UP POINTOPOINT RUNNING NOARP MULTICAST MTU:1492 Metric:1 RX packets:1032650 errors:0 dropped:0 overruns:0 frame:0 TX packets:995464 errors:0 dropped:0 overruns:0 carrier:0 collisions:0 txqueuelen:3 RX bytes:766171148 (730.6 MiB) TX bytes:312872085 (298.3 MiB)
Tak uz mi to bezi. Zatim jsem tedy pridal dalsi sitovku na router, abych vse vyzkousel (eth2). Jen jsem nastavil IP a subnet a vse jede. Z venku bez problemu pingnu.
Problem, ale mam, ze ta IP na eth2 je vlastne uplne zbytecne. V tomto pripade budu ochuzen o jednu zivou IP adresu pro server. Musim tedy nastavit nejaky bridge na eth2 a jestli jsem dobre hledal, tak je to ARPproxy. Mylim se? Nebo je tam nejaky jiny zpusob, jak se to da udelat?
Tady je vypis,jak to nyni mam na routeru.
alsfw01:~# ifconfig eth0 Link encap:Ethernet HWaddr 00:02:B3:B7:68:9F inet addr:192.168.10.254 Bcast:192.168.10.255 Mask:255.255.255.0 inet6 addr: fe80::202:b3ff:feb7:689f/64 Scope:Link UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1 RX packets:54587 errors:0 dropped:0 overruns:0 frame:0 TX packets:57166 errors:0 dropped:0 overruns:0 carrier:0 collisions:0 txqueuelen:1000 RX bytes:25416827 (24.2 MiB) TX bytes:26464472 (25.2 MiB) eth1 Link encap:Ethernet HWaddr 00:A0:C9:A0:DE:CB inet addr:192.168.30.254 Bcast:192.168.30.255 Mask:255.255.255.0 inet6 addr: fe80::2a0:c9ff:fea0:decb/64 Scope:Link UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1 RX packets:60789 errors:0 dropped:0 overruns:0 frame:0 TX packets:54390 errors:5 dropped:0 overruns:0 carrier:5 collisions:0 txqueuelen:1000 RX bytes:26493295 (25.2 MiB) TX bytes:25080521 (23.9 MiB) eth2 Link encap:Ethernet HWaddr 00:05:1C:1F:1F:C3 inet addr:60.241.247.209 Bcast:60.255.255.255 Mask:255.255.255.248 inet6 addr: fe80::205:1cff:fe1f:1fc3/64 Scope:Link UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1 RX packets:1524 errors:0 dropped:0 overruns:0 frame:0 TX packets:18 errors:0 dropped:0 overruns:0 carrier:0 collisions:0 txqueuelen:1000 RX bytes:93774 (91.5 KiB) TX bytes:1314 (1.2 KiB) Interrupt:177 Base address:0xc400 lo Link encap:Local Loopback inet addr:127.0.0.1 Mask:255.0.0.0 inet6 addr: ::1/128 Scope:Host UP LOOPBACK RUNNING MTU:16436 Metric:1 RX packets:13 errors:0 dropped:0 overruns:0 frame:0 TX packets:13 errors:0 dropped:0 overruns:0 carrier:0 collisions:0 txqueuelen:0 RX bytes:1080 (1.0 KiB) TX bytes:1080 (1.0 KiB) ppp0 Link encap:Point-to-Point Protocol inet addr:60.241.250.130 P-t-P:10.20.20.168 Mask:255.255.255.255 UP POINTOPOINT RUNNING NOARP MULTICAST MTU:1492 Metric:1 RX packets:53704 errors:0 dropped:0 overruns:0 frame:0 TX packets:56457 errors:0 dropped:0 overruns:0 carrier:0 collisions:0 txqueuelen:3 RX bytes:24160375 (23.0 MiB) TX bytes:25198082 (24.0 MiB) alsfw01:~# route Kernel IP routing table Destination Gateway Genmask Flags Metric Ref Use Iface 10.20.20.168 * 255.255.255.255 UH 0 0 0 ppp0 60.241.247.208 * 255.255.255.248 U 0 0 0 eth2 192.168.30.0 * 255.255.255.0 U 0 0 0 eth1 192.168.10.0 * 255.255.255.0 U 0 0 0 eth0 default 10.20.20.168 0.0.0.0 UG 0 0 0 ppp0
Tiskni
Sdílej:
ISSN 1214-1267, (c) 1999-2007 Stickfish s.r.o.