From owner-FreeBSD-users-jp@jp.freebsd.org  Mon Aug  5 01:15:38 1996
Received: by mail.jp.freebsd.org (8.7.3+2.6Wbeta5/8.7.3) id BAA22480
	Mon, 5 Aug 1996 01:15:38 +0900 (JST)
Received: by mail.jp.freebsd.org (8.7.3+2.6Wbeta5/8.7.3) with ESMTP id BAA22475
	for <FreeBSD-users-jp@jp.freebsd.org>; Mon, 5 Aug 1996 01:15:36 +0900 (JST)
Received: from bishop.isl.intec.co.jp by ftp.intec.co.jp (8.7.5+2.6Wbeta6/3.4W4-generic) id BAA24902; Mon, 5 Aug 1996 01:15:33 +0900 (JST)
Received: (from uucp@localhost) by bishop.isl.intec.co.jp (8.7.5/3.4W4-bishop) with UUCP id BAA05833 for FreeBSD-users-jp@jp.freebsd.org; Mon, 5 Aug 1996 01:15:32 +0900 (JST)
Received: (from ikuo@localhost) by pawn.isl.intec.co.jp (8.7.5/3.4W4-uucp) id AAA10966; Mon, 5 Aug 1996 00:41:52 +0900 (JST)
Date: Mon, 5 Aug 1996 00:41:52 +0900 (JST)
From: Ikuo Nakagawa <ikuo@isl.intec.co.jp>
Message-Id: <199608041541.AAA10966@pawn.isl.intec.co.jp>
To: FreeBSD-users-jp@jp.freebsd.org
In-Reply-To: <199608041509.AAA15875@MAGI.ns.maizuru-ct.ac.jp>
References: <199608041404.XAA09524@pawn.isl.intec.co.jp>
	<199608041509.AAA15875@MAGI.ns.maizuru-ct.ac.jp>
Reply-To: FreeBSD-users-jp@jp.freebsd.org
X-Distribute: distribute [version 2.1 (Alpha) patchlevel=19]
X-Sequence: FreeBSD-users-jp 3525
Subject: [FreeBSD-users-jp 3525] Re: IP Firewall
Errors-To: owner-FreeBSD-users-jp@jp.freebsd.org
Sender: owner-FreeBSD-users-jp@jp.freebsd.org

$B$$$/$*$G$9!#(B

>>>>> In article <199608041509.AAA15875@MAGI.ns.maizuru-ct.ac.jp>,
	Kunihiro_Tanaka <s4449@icsc.maizuru-ct.ac.jp> writes:

> > >>              CISCO          FreeBSD
> > >>   NCA5  -------/---------------/------------- $B<+J,$N%^%7%s(B
> > >> $B!J5~Bg!K(B ISDN      $B9;Fb%M%C%H(B     $B%5%V%M%C%H(B
> > >>                   202.19.104.?    192.168.0.?
> > >>                   202.19.105.?
> > 
> > NCA5 $B$H(B CISCO $B$N4V$N7PO)@)8f$r$I$&$7$F$$$k$+$o$+$j$^$9$+(B?
> > 
> > $B!tD>4QE*$K$O(B static $B$J$N$G$9$,(B...

> static $B$K$J$C$F$$$?$H;W$$$^$9!#(B

$BN;2r!#(B

> > o 192.168.0.? $B$+$i%$%s%?!<%M%C%H$X=P$F9T$/(B packet $B$,L5$$;v$r(B
> > $BJ]>c$9$kI,MW$,$"$j$^$9!#$?$H$($P(B CISCO $B$G(B filtering $B$9$k$H(B
> > $B$$$&$N$,$R$H$D$N<j$G$9$,!"$H$b$+$/%$%s%?!<%M%C%H$K(B source
> > address $B$,(B private $B$J$b$N$r=P$7$F$O$$$1$J$$$N$G!#(B

> > o $B%U%!%$%"%&%)!<%k$r9=@.$7$F$$$k>l9g!"$=$l$H$N7s$M9g$$$,LdBj(B
> > $B$K$J$k$3$H$,$"$k!#(B

> FreeBSD $B$N;~E@$G!"%m!<%+%k$+$i(B 202.19.104.0/24 $B$H(B 202.19.105/24 $B$K$7$+Cf7Q(B
> $B$7$J$$$h$&$K$O$G$-$^$;$s$+!#(B

$B$G$-$^$9!#I8=`$N(B ipfirewall $B$G$b$?$V$s$G$-$k$H;W$$$^$9$7!"$"$H!"(B
screend $B$H$$$&$N$b$"$j$^$9!#(B

$B$?$@$7!"3X9;A4BN$H$7$F8+$l$O30It$X$N=P8}$G(B in/out $BN>J}$K(B filter
$B$9$k$N$,0lHV$-$l$$$@$H;W$$$^$9!#(B

$BFC$K!"%U%!%$%"%&%)!<%k$,$"$k$J$i!"$3$NJU$j$KCm0U$,I,MW$G$9!#(B

> > $B!t(B $B$A$J$_$K!"9;Fb%M%C%H$N7PO)@)8f$O(B RIP $B$H9M$($FNI$$$G$7$g$&$+(B?

> $B$$$(!"$&$A$N3X9;$N9;Fb%M%C%H$O$9$Y$F$N%^%7%s$,(B CISCO $B$r%G%U%)%k%H%k!<%?$K$9(B
> $B$k$h$&$K$7$F$*$j!"(B CISCO $B$,A4$F$N7PO)>pJs$r;}$C$F$$$^$9!#(B
> $B$&$A$N3X9;$NCf$K%@%$%J%_%C%/%k!<%F%#%s%0$r$7$F$$$k8D=j$O$J$$!J%O%:!K$G$9!#(B

$B$G$O(B routed $B$OITMW$G$9$M!#$?$@$7!"3XFb$K?7$7$/(B 192.168.xx $B$H$$$&(B
$B%"%I%l%9$,8=$l$k$N$G!"7PO)>pJs$r%k!<%?$d(B WS $B$KEPO?$9$kI,MW$,$"$k(B
$B$H;W$$$^$9!#$b$A$m$sA4$F$N%k!<%?$d(B WS $B$KEPO?$,I,MW$J$o$1$G$O$J$$(B
$B$G$9$,!#>\:Y$O9=@.$K$h$j$^$9!#(B

> FreeBSD $B$N%U%!%$%"!<%&%)!<%k$C$F#I#P%U%#%k%?%j%s%0$7$F$/$l$J$$$s$G$9$+$M$'!#(B

ipfirewall $B$G$9$+(B? $B$G$-$k$H;W$$$^$9$,(B...

$B0JA0!"%P%0$@$i$1$G$R$I$$L\$K$"$C$?$N$G!"$=$l0JMh;H$C$F$J$$$G$9!#(B
$B:G6a$G$O;H$($k$h$&$K$J$C$?$HJ9$$$F$$$^$9$,!">\:Y$O>\$7$$J}$K>y$j(B
$B$^$9(B :-)
-- 
Ikuo Nakagawa <ikuo@intec.co.jp>
