Re: Router vs Firewall

From: Volker Birk (bumens_at_dingens.org)
Date: 11/04/05


Date: 4 Nov 2005 08:00:25 +0100

timbrigham@gmail.com <timbrigham@gmail.com> wrote:
> Can a router be told not to route from specific subnets to other
> subnets, or is that a firewall only thing?
> EG:
> 192.168.30.x -> 192.168.100.x allowed
> 192.168.30.x -> 192.168.101.x not allowed

If there is no corresponding entry in the routing table, then a router will
not route into a network.

If you want routes like "from A to B, from A to C, but not from B to C"
then sometimes you need filtering.

Yours,
VB.

-- 
"Ich bin ein freier Mensch und werde jetzt von meinen Freiheitsrechten
Gebrauch machen - und zwar ausgiebig - natürlich nur in dem Rahmen, den
Otto Schily mir noch zur Verfügung stellt."
                   Wolfgang Clement am 10.10.05 als Noch-Superminister


Relevant Pages

  • Re: DHCP and routing across subnets
    ... > You cannot fix this problem by changing things in DHCP or on the RRAS ... > (ie the router option in DHCP should be to the DSL router). ... > subnets access to the Internet. ... > static route to each DSL router to redirect the local traffic to the RRAS ...
    (microsoft.public.windows.server.networking)
  • Re: Frame Relay Lan routing between sites help needed
    ... router rip. ... had some static route statements incorrect. ... you'd have a static route out ... 10.0.0.0/8 is variably subnetted, 3 subnets, 2 masks ...
    (comp.dcom.sys.cisco)
  • Re: please advise - problem with routing
    ... (from this network main server is accessed through GW 192.168.26.1) ... > But working with the concept that we've got two subnets 192.168.1.x/24 and ... > your Internet Router, and not related to routing between the two internal ... > router needs to have a route entry that directs traffic to the ...
    (microsoft.public.windows.server.networking)
  • Re: Running out of IPs...what to do?
    ... You simply need to add further subnets, and route between them. ... You can connect two subnets with a router, ... You can use just the one DHCP server. ...
    (microsoft.public.windows.server.networking)
  • Re: Second ISP
    ... make sure that the second ISP router does not have a better default ... All of this can be done with show ip route ... Does this require a routing ... but I would recommend a routing protocol. ...
    (comp.dcom.sys.cisco)