[Users] Re: NAT/Firewall CT-based?

Suno Ano suno.ano at sunoano.org
Thu Mar 11 14:21:08 EST 2010


Marc> Is it a good idea to have a CT as NAT and Firewall or I should use
Marc> the HN for this purpose? Is there any doc explaining a similar
Marc> configuration? Any other recommendation?

I would recommend you do routing and packet filtering on the HN since it
is easier and makes a lot more sense semantically. I have a script you
can use http://github.com/sunoano/bash/blob/master/packet_filter

Also, take a look at the URLs mentioned in the script for further
information.



More information about the Users mailing list