Author Topic: Rules based on interfaces  (Read 2380 times)

pmarcon

  • Zen Apprentice
  • *
  • Posts: 2
  • Karma: +0/-0
    • View Profile
Rules based on interfaces
« on: October 04, 2011, 08:40:14 pm »
Hello,
There are some way to make the following rule in zentyal 2.2?
traffic coming from eth0 is denied go to eth1.

Consider eth0 and eth1 as being internal interfaces connected to two different LANs.

LAN1 (192.168.1.0/24) ---> eth0 ------> (192.168.1.1)Zentyal Box (BLOCK)(192.168.2.0) ----> eth1 ----> LAN2 (192.168.2.0/24)

Paulo


pmarcon

  • Zen Apprentice
  • *
  • Posts: 2
  • Karma: +0/-0
    • View Profile
Re: Rules based on interfaces
« Reply #1 on: October 04, 2011, 08:47:02 pm »
I have thinked and maybe with the following simple rule I'll resolve my problem:

192.168.1.0/24 ----> 192.168.2.0/24 (BLOCK)
By this way if someone that are connected to eth0, change her IP to 192.168.2.x it will not navigate!

Is that correct?

c4rdinal

  • Zen Samurai
  • ****
  • Posts: 341
  • Karma: +4/-0
    • View Profile
Re: Rules based on interfaces
« Reply #2 on: October 05, 2011, 09:05:25 am »
You can easily do this with fw.