netdev
[Top] [All Lists]

Question on bridging with VLANs, traffic-shaping, and firewalling..

To: VLAN Mailing List <vlan@xxxxxxxxxxxxxxxx>, "netdev@xxxxxxxxxxx" <netdev@xxxxxxxxxxx>
Subject: Question on bridging with VLANs, traffic-shaping, and firewalling..
From: Ben Greear <greearb@xxxxxxxxxxxxxxx>
Date: Tue, 15 May 2001 23:13:30 -0700
Organization: Candela Technologies
Sender: owner-netdev@xxxxxxxxxxx
Well, I finally found an application that might be able to
take advantage of bridging 802.1Q VLANs.

Specifically, I'm thinking about creating many bridge groups,
with some number of VLANs in each group.  Traffic should be
bridged across the group normally, but should never be bridged
*between* groups.

Any idea how possible this is?  If it can work currently for
Ethernet, then I'm sure I can make it work with the VLAN code
if it doesn't already....

Also, anyone know how/if I can do firewalling and/or traffic-shaping
in conjunction with bridging?  The customer is 'untrusted', so I want
to be able to firewall/protect the network ports against ARP-spoofing
and serving DHCP responses (fun way to take down a cable modem network),
for example...

Finally, supposing I can get this working in some manner, am I
foolish to think I can push 500+ Mbps of traffic, bi-directional,
with a dual processor board and two 64bit PCI GigE interfaces?

Many thanks,
Ben

-- 
Ben Greear <greearb@xxxxxxxxxxxxxxx>          <Ben_Greear@xxxxxxxxxx>
President of Candela Technologies Inc      http://www.candelatech.com
ScryMUD:  http://scry.wanfear.com     http://scry.wanfear.com/~greear

<Prev in Thread] Current Thread [Next in Thread>