WARNING - OLD ARCHIVES

This is an archived copy of the Xen.org mailing list, which we have preserved to ensure that existing links to archives are not broken. The live archive, which contains the latest emails, can be found at http://lists.xen.org/
   
 
 
Xen 
 
Home Products Support Community News
 
   
 

xen-users

Re: [Xen-users] DMZ on xen with Dom0 as gw

To: Federico Tomassini <effetom@xxxxxxxxx>, Xen-users@xxxxxxxxxxxxxxxxxxx
Subject: Re: [Xen-users] DMZ on xen with Dom0 as gw
From: Norman Zimmer <bigboss@xxxxxxxxxxx>
Date: Sun, 16 Jul 2006 13:37:18 +0200
Delivery-date: Sun, 16 Jul 2006 04:38:08 -0700
Envelope-to: www-data@xxxxxxxxxxxxxxxxxx
In-reply-to: <20060714165731.2c7d457b.effetom@xxxxxxxxx>
List-help: <mailto:xen-users-request@lists.xensource.com?subject=help>
List-id: Xen user discussion <xen-users.lists.xensource.com>
List-post: <mailto:xen-users@lists.xensource.com>
List-subscribe: <http://lists.xensource.com/cgi-bin/mailman/listinfo/xen-users>, <mailto:xen-users-request@lists.xensource.com?subject=subscribe>
List-unsubscribe: <http://lists.xensource.com/cgi-bin/mailman/listinfo/xen-users>, <mailto:xen-users-request@lists.xensource.com?subject=unsubscribe>
References: <20060714165731.2c7d457b.effetom@xxxxxxxxx>
Sender: xen-users-bounces@xxxxxxxxxxxxxxxxxxx
User-agent: Thunderbird 1.5.0.2 (X11/20060501)


Federico Tomassini wrote:
I have to publish DomUs on the Net, with public IPs.

I would configure DomUs to have 10.0.100.0/24 IP address, and to
forward ( source/dest-natting) traffic, simulating a DMZ with Dom0 as
gateway:

Why are you using a Gateway and NAT? You only need this if you havent enough public IPs.

Give the Public IPs to the DomUs and make a bridging-firewall.

regards norman




_______________________________________________
Xen-users mailing list
Xen-users@xxxxxxxxxxxxxxxxxxx
http://lists.xensource.com/xen-users

<Prev in Thread] Current Thread [Next in Thread>