Gentoo Archives: gentoo-user

From: Grant Edwards <grante@××××.com>
To: gentoo-user@l.g.o
Subject: [gentoo-user] Re: Making sure I am a good netizen and secure.
Date: Sun, 06 Sep 2009 03:01:56
Message-Id: h7v8lu$tsj$1@ger.gmane.org
In Reply to: Re: [gentoo-user] Re: Making sure I am a good netizen and secure. by Dale
1 On 2009-09-05, Dale <rdalek1967@×××××.com> wrote:
2 > Grant Edwards wrote:
3 >> On 2009-09-05, Dale <rdalek1967@×××××.com> wrote:
4 >>
5 >>
6 >>> As some may know already, I recently got DSL.
7 >>>
8 >> [...]
9 >>
10 >>> The DSL modem I am using is the Motorola 2210. It seems to be
11 >>> a gateway thing. I have no router at the moment
12 >>>
13 >>
14 >> The 2210 is a router that is doing NAT with a stateful
15 >> firewall. It will (assuming it's not too buggy) prevent
16 >> outside access to your network.
17 >>
18 >> If you buy a second router (e.g. a Linksys or DLink), you'll
19 >> just be duplicating the NAT/firewall/routing functions in the
20 >> 2210. You can do that if you want. I used to run a two layer
21 >> NAT setup with a Cisco 678 DSL modem (configure to forward all
22 >> TCP/UDP ports) and an OpenWRT gateway. There were features I
23 >> needed that OpenWRT had that the Cisco didn't.
24 >>
25 >> Unless there's something specific that you want to do that
26 >> isn't supported by the 2210 (or you're aware of deficiencies in
27 >> the 2210), I probably wouldn't bother adding a second firewall
28 >> box.
29 >
30 > I was thinking about buying a router IF I build a second box and need to
31 > share the internet with it. The modem only has one port
32
33 Probably all you need is an Ethernet switch, though there are
34 some DSL modems that have been intentionally crippled in an
35 attempt to make them work with only a single client.
36
37 My sister has one. It will support a /16 internal network just
38 fine except that the DSL modem's DHCP server will only hand out
39 a single address (and there's no way to shut off the DHCP
40 server so you can let something else take over). You could
41 fill the house with machines as long as they all have
42 statically assigned addresses.
43
44 > and apparently zero reconfigurability because when I log in,
45 > there are no options to change anything except what time it
46 > updates the modem software. So, I hope it works well. o_O
47
48 If you do want something else, you can add a second
49 firewall/router, or you can probably replace the 2210 with
50 something a bit more configurable. I've installed a couple
51 Zoom DSL modems. They work fine, and were fairly configurable.
52
53 What would be coolest would be something supported by OpenWRT,
54 but I was never able to find such a thing.
55
56 --
57 Grant