On 12/19/02 7:04 AM, "Kevin MacNeil" <[EMAIL PROTECTED]> tapped the
keys:

> I use firestarter on my desktop machine, but many administrators don't
> want to install gnome / x / etc. on a dedicated firewall or router box.

Yup - mine is console only.

> The shorewall firewall (shorewall.sf.net) doesn't have gui wizards, but
> it comes with full documentation and unless you're doing something
> really unusual, you could be up and running with it fairly quickly.

I think I looked briefly at that - I'll have to check it out again.

> I've never attempted NAT for that many users, but it's possible
> (likely?) that a custom kernel tuned specifically for NAT might improve
> performance.

I haven't looked at compiling the kernel and it's parameters in a while.
I'll have to dig in.

>  Compiling the kernel doesn't have to be dangerous.  You
> can install the latest redhat kernel src rpm, copy the .config file for
> your architecture from /usr/src/linux-2.4/configs, make sure the
> EXTRAVERSION parameter in the Makefile has something unique in it, like
> maybe -18.7.router, and compile away.  When you "make modules_install"
> the modules will get installed in their own directory in /lib/modules
> (e.g.  2.4.18-18.7.router) and won't step on your current setup.  If you
> add a new stanza to lilo.conf or grub.conf you can pick whatever kernel
> you want during bootup.

Great advice.  Being that it's a production box right now, it may take me a
little while to get to that.  Yes, we're even going strong on the weekends.

Thanks very much for all of the help.
-- 
Jeff Stillwall
[EMAIL PROTECTED]



-- 
redhat-list mailing list
unsubscribe mailto:[EMAIL PROTECTED]?subject=unsubscribe
https://listman.redhat.com/mailman/listinfo/redhat-list

Reply via email to