WARNING - OLD ARCHIVES

This is an archived copy of the Xen.org mailing list, which we have preserved to ensure that existing links to archives are not broken. The live archive, which contains the latest emails, can be found at http://lists.xen.org/
   
 
 
Xen 
 
Home Products Support Community News
 
   
 

xen-users

[Xen-users] Networking dilema!!

To: xen-users@xxxxxxxxxxxxxxxxxxx, barrysul69@xxxxxxxxxxx
Subject: [Xen-users] Networking dilema!!
From: Administrator <barryns2@xxxxxxxxxxxx>
Date: Sat, 18 Feb 2006 18:44:52 -0500
Delivery-date: Sat, 18 Feb 2006 23:58:12 +0000
Envelope-to: www-data@xxxxxxxxxxxxxxxxxxx
List-help: <mailto:xen-users-request@lists.xensource.com?subject=help>
List-id: Xen user discussion <xen-users.lists.xensource.com>
List-post: <mailto:xen-users@lists.xensource.com>
List-subscribe: <http://lists.xensource.com/cgi-bin/mailman/listinfo/xen-users>, <mailto:xen-users-request@lists.xensource.com?subject=subscribe>
List-unsubscribe: <http://lists.xensource.com/cgi-bin/mailman/listinfo/xen-users>, <mailto:xen-users-request@lists.xensource.com?subject=unsubscribe>
Organization: Barry's PC Solutions
Reply-to: barryns2@xxxxxxxxxxxx
Sender: xen-users-bounces@xxxxxxxxxxxxxxxxxxx
I have a wi-fi router connected to the internet, with a large server
connected(cat5) to the router as well as an xbox and sony ps, as well as
laptop using wi-fi, which is where I want to keep them.

On my server I have two nics, eth0 is connected to the router and eth1
connects to a switch with 2-3 machines connected, this is my internal
lan.

Now I want to use xen to set up to setup 2-3 VMs in a DMZ, as well as 1
VM running samba as a PDC on the same network as eth1.

Networks:
        external(router) - 192.168.1.0
        DMZ(virtual)     - 10.10.0.0
        internal         - 192.168.0.0  
Some rules:

        unrestricted traffic between 192.168.1.0 net and internet
        except for laptop no traffic from 192.168.1.0 to 192.168.0.0
        laptop needs to exchange files with machines on 192.168.0.0
        all incoming connections to DMZ
        internal lan allows only outgoing connections

Questions:
        1 - Should I use Bridging, Routing, nat, or some combination?
            How?
        2 - Should I do firewalling in dom0, or bridge all interfaces and
            run firewall on a domU?  How?
        3 - Is it possible for a domU to be in the same net as the real
            machines hanging off eth1?  How?
        

Any help, ideas, critiques will be appreciated

Barry S


_______________________________________________
Xen-users mailing list
Xen-users@xxxxxxxxxxxxxxxxxxx
http://lists.xensource.com/xen-users

<Prev in Thread] Current Thread [Next in Thread>