-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Henning Brauer wrote:
> * David Newman <[EMAIL PROTECTED]> [2007-06-04 03:59]:
>> but it says carp doesn't work with bridging
> 
> carp alows two hosts to share an IP.
> now explain me how that is supposed to work with bridges, where the 
> forwarding does not happen at the IP layer.
> 

Pardon my imprecision. I do NOT require bridging. My requirements are:

1. to set up pf (with carp and pfsync) to protect boxes with routable IP
addresses

2. to locate the pf machines on the same routable IP subnet as the
protected boxes

For example, suppose the network is 198.18.0.0/26, the ISP's router is
.1, and my hosts are .11-.25.

I'm fine with using pf in routing mode, but I wasn't aware that pf (or
anything, for that matter) could "route" between host addresses on the
same IP subnet.

I could divide the /26 into smaller netblocks and configure pf to route
between them but I'm reluctant to do that given that I'd burn a network
and broadcast address for each netblock, and a /26 is small enough as it is.

Is there a better way? Thanks.

dn
iD8DBQFGZB2kyPxGVjntI4IRAvzSAJ9ordMIHfD08TUUSoD/Zn9LhTZ9YgCcDUu5
mAKkiAvvZflD1HT0cguQGRM=
=g5HN
-----END PGP SIGNATURE-----

Reply via email to