1 Oct 2006 02:57
Re: DMZ or no DMZ?
Tom Eastep <teastep <at> shorewall.net>
2006-10-01 00:57:38 GMT
2006-10-01 00:57:38 GMT
Michael Andersson wrote: > I have just bought > a voip box that either needs to be in front of my existing > router(shorewall), or behind it in a dmz, or behind it if my router > supports symmetric nat. The second option is what i would prefer. I dont > even know what the third option is. It only applies if you have more than one public IP address. > However, looking at the > documentation it will only explain a solution when i have a separate nic > for the dmz. When the documentation for consumer-grade products talks about a DMZ, it bears little or no resemblance to a DMZ as described in the Shorewall documentation. But in both cases, a DMZ involves a separate NIC. > The voip must have at least 128kb/s in both directions for a satisfying > sound quality over the phone, but the traffic shaping/control page > doesn't mention if the is possible to achieve with a dmz, or i might not > understand it completely. Only your ISP can guarantee a level of service for inbound traffic. Shorewall traffic shaping can ensure that your voip traffic gets 128kbs outbound, with or without a DMZ. > My local network is in the 192.168.0.0 subnet and the voip box will be > on 192.168.1.0 subnet, will this cause any trouble? Depends on how you configure your IP network. Without adding another(Continue reading)
RSS Feed