Comrades,
I have recently moved my dedicated IPCop firewall onto a spare server as a VM under VMWare server 2. Everything seems to be working as required but i have some concerns regarding security of the spare server and its associated VM's. Ive drawn up my current setup and would appreciate any input/concerns/suggestions you may have. This is only intended as a home setup but i'd still like to be safe in the knowledge that my ML115 isnt being breached.
1. Can anyone confirm that ML115 server is secure from internet traffic?
2. Is running GRC shields up online test - from both the server and workstations - a definative way of testing the firewall?
3. I can browse the internet from the ML115 but shouldnt i be setting the eth0 (192.168.100.10) to have the firewalls green nic IP to ensure the integrity of the system? Ive attempted to set the gw to the green ip but this results in zero internet connectivity for the workstations or server.
Kind Regards,
Martin Gerard.
ML115 ifconfig:
eth0 Link encap:Ethernet HWaddr 00:21:5a:f5:72:1c
inet addr:192.168.100.10 Bcast:192.168.100.255 Mask:255.255.255.0
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX bytes:7904578 (7.5 MiB) TX bytes:120622468 (115.0 MiB)
eth1 Link encap:Ethernet HWaddr 00:40:f4:1a:6a:69
inet addr:7x.9x.3x.7x Bcast:255.255.255.255 Mask:255.255.255.0
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX bytes:123829998 (118.0 MiB) TX bytes:7770683 (7.4 MiB)
lo Link encap:Local Loopback
inet addr:127.0.0.1 Mask:255.0.0.0
UP LOOPBACK RUNNING MTU:16436 Metric:1
RX bytes:4308386 (4.1 MiB) TX bytes:4308386 (4.1 MiB)
vmnet1 Link encap:Ethernet HWaddr 00:50:56:c0:00:01
inet addr:172.16.225.1 Bcast:172.16.225.255 Mask:255.255.255.0
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
vmnet8 Link encap:Ethernet HWaddr 00:50:56:c0:00:08
inet addr:192.168.5.1 Bcast:192.168.5.255 Mask:255.255.255.0
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
Why no VMnet0?
IPCOP ifconfig:
eth0 Link encap:Ethernet HWaddr 00:0C:29:3C:CA:79
inet addr:192.168.100.11 Bcast:192.168.100.255 Mask:255.255.255.0
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
collisions:0 txqueuelen:1000
RX bytes:6495492 (6.1 MB) TX bytes:115915986 (110.5 MB)
eth1 Link encap:Ethernet HWaddr 00:0C:29:3C:CA:83
inet addr:192.168.5.128 Bcast:192.168.5.255 Mask:255.255.255.0
UP BROADCAST NOTRAILERS RUNNING MTU:1500 Metric:1
collisions:0 txqueuelen:1000
RX bytes:115736327 (110.3 MB) TX bytes:6173567 (5.8 MB)
lo Link encap:Local Loopback
inet addr:127.0.0.1 Mask:255.0.0.0
UP LOOPBACK RUNNING MTU:16436 Metric:1