  Author  Subject: Re: Firewall Security

Original Poster: Mark Krentel

You need to tell us more about how your network is connected,
where this machine is on the network and where eth1 goes.

You have a cable modem (RoadRunner), right? So, assume the cable
modem connects through eth1 to this, the gateway machine, and you have
a separate eth0 interface that connects to your hub and the rest of
the internal network. In this case, if it's an input packet that
comes from the cable modem, then yes it's a spoofed address.

But, if your cable modem connects directly to your hub, then you know
nothing. It could be spoofed address from the Internet, or it could
come from your local network, and you have no way to tell the
difference. This is why the first arrangement is better.


