   Ʈũ  ͳ Ʈ̷μ  
  6.X Ȱ

  Paul Ramsey <pramsey@refractions.net>

  2000 6 22

   6  õ ٸ   ұԸ  Ǵ 繫
  Ʈũ ͳ Ʈ̷ ϵ ϴ   
  Ʃ丮. ٷ  ŽĿ̵(masquerading), DNS, DHCP, 
    Ѵ.

  ______________________________________________________________________

  

  1. Ұ
     1.1 
     1.2 ۱

  2. ȱ
     2.1 긦  
     2.2 갡  
     2.3 Ʈũ ī尡 ϳ ִ 

  3. Ʈŷ ϱ
     3.1 Ʈũ ̹ ϱ
        3.1.1    Ʈũ ī
     3.2  Ʈũ ϱ
        3.2.1 Ʈũ ġ
        3.2.2 DHCP 
        3.2.3 Ŭ̾Ʈ ǻ
        3.2.4 DNS 
        3.2.5  Ʈũ ϱ
     3.3 ܺ Ʈũ ϱ
        3.3.1  IP  
        3.3.2 DHCP ϴ 
        3.3.3 ԰ ܵ
           3.3.3.1 ̴ 󿡼 PPP (PPPoE)
           3.3.3.2 ٺ DHCP Ʈ
           3.3.3.3 Road Runner
        3.3.4 Ʈũ Ʈ 
     3.4 

  4. ŽĿ̵ ϱ
  5. Problems 
     5.1 ICQ ۵ ʴ´
     5.2  6.X ƴ Į 2.X  ִ.
     5.3     밡   Ǳ⸦ ٶ

  ______________________________________________________________________

  1.  Ұ

     6.X  Ʈũ Ǵ ұԸ 繫 Ʈũ
   ͳ Ʈ̷ ϱ    Ѵ.
  ô ſ ȭ Ǿµ,  Ư 쵵   ̰,
   Ʈũ ּҰ Ǵ      ̴.
  ſ ߿   :

  o   뼱(fulltime Cable) Ǵ ADSL ͳݿ Ǿ ִ.

  o   ڽ ǻ͵    뿡  6.X 
     ġ  ִ.  ̷ ȳ  پ ǥ ƹж
     ǻ(MacMillan Publishing)  Ǵ Mandrake 6.X 
      Ļǰ ȿϴٴ  ˾ .

  o    ǻʹ ο ġ Ʈũ ī带   
        ȣϵȴ.

  o      ̻ ǻ͸ Ʈũ Ѵٸ ̴
     긦  Ѵ.  ƴϸ,    ǻ͸ Ѵٸ
     ũν- ̺(cross-over cable)  Ѵ.

  o    񿡼 ؽƮ  ϴ  ȴ.

  o   rootμ  α   ִ.  
     CDROMκ RPM Ű ġϴ  ȴ.

    ̷   ϳ Ű   
  Ƹ  ҿ  ̴.

  ġ   ؾ ϴ Ư  ִ  ƴϴ.   
  ϰ   ø ܼ ϶.   ()
  Ʈŷ óϱ  ʿ   ġϴ   Ѵ.
  ġϴ  ġϰų ؾ ϴ Ϳ    
   ʴ´. ׷ ͵ ۵ ϰ   
    ȥ ʵ   ް Բ Ǵ GUI
    ϱ ٴ ý    ϰ 
  ̴. δ, ̰    ̴.  δ, (,
  X ۵ ʴ, Ǵ 帮 (headless server) ϴ
  쿡)    Ȳ ξ  ϰ  
  ִ    ̴.

  1.1.  

      HTML 
  http://www.coastnet.com/~pramsey/linux/homenet.html, SGML 
  http://www.coastnet.com/~pramsey/linux/homenet.sgml   
  ִ.

  o  1999 12 21:  

  o  2000 1 2: John Mellorκ ܺ Ʈũ   
     

  o  2000 1 22: Chris Leaκ  Ʈũ ī IP
     ˸(aliasing)     Ʈ

  o  2000 3 16: Nelson Gibbsκ Ӽ Ȱ Į
     ϴ   

  o  2000 6 22:  6.2    ȭ. Kerr
     Firstκ   PPPoE  

  1.2.  ۱

  ۱ 2000, Paul Ramsey.

   ,     Ͽ, , ü Ǵ
  κ   ִ:

  o   ۱   㰡  ݵ  ϰų κ
     纻 ϰ Ǿ Ѵ.
  o    Ǵ Ļ ۹̶   ۼǴ  ݵ
     ڿ  ΰǾ Ѵ.

  o    ۹ κ Ϸ,  Ŵ  
     ϴ   ø ݵ ԽѾ ϰ,  
     ϱ   Ͽ Ѵ.

  o    ο ־ٸ  㰡    κ
     ٸ ۹ 䳪 ο  μ   ִ.

  ̷   ܰ й  ؼ ȴ: 
   Ἥ û϶.  ̷  , л  
  ϴ  ƴ϶, 츮 ڷμ ȣϰ ̴.

  2.  ȱ

   긦 ϰ ִ ƴ  Ʈũ
  (network topology) ̶ ٸ ̴. ڴ 
  RJ45 ̺   Ʈŷ ٷ ̴.   ̺(thin
  coax) ٷ ʴ´.  ̺ ϸ 긦  ʰ
  ټ ǻ͸ Ʈũ   ִ. ,  
  ϴ    ɽ Ѵ.  ̹ Ʈŷ
  ˰ ִٸ ̵ ô 밳 ߺǴ  ̴.

  2.1.  긦  

    긦  ִٸ,  Ʈũ ̰
  <http://www.coastnet.com/~pramsey/linux/w_hub.gif>   ̴.

   ڽ ִ eth0 ī带  ڿ  ޵ ̺(Ǵ
    ۵ϴ   ƴ ) Ͽ ̺ 
  Ǵ ADSL ڽ ϶.   ̺  ũν
  Ǳ⵵ , δ ̺  (straight-through)
  Ǳ⵵ ϱ  ̴ ߿ϴ. ȸ簡 ϴ  
  ϱ ϴ ̴.

   ڽ ִ eth1 ī带 뼱(straight-through cable)
  Ͽ 꿡 ϶.  뼱 Ͽ  ǻ θ
  꿡 ϶.

  2.2.  갡  

    긦  ʾҴٸ, ũν ̺ Ͽ,
  ǻ  븦   ڽ   ִ. 
   ̰ <http://www.coastnet.com/~pramsey/linux/wo_hub.gif>
    ̴.

   ڽ ִ eth0 ī带  ڿ  ޵ ̺
  Ͽ ̺  Ǵ ADSL ڽ ϶.  ڽ ִ
  eth1 ī带 ũν ̺ Ͽ ٸ ǻͿ ϶.

  2.3.  Ʈũ ī尡 ϳ ִ 

  ̴ ٶ  ƴϴ. (     ܺ
  Ʈũ   Ʈũ ְ,  ̷δ ũŷ
   ϰ ȴ. ,  Ƹ ſ .) ,
  ޾Ƶ鿩  ִ.    𸥴.

   Ŀ "IP ˸"  Ѵ. ̴ ϳ ̴ ī尡
  ÿ    IP ּҸ ٷ  Ѵ. ް
  ǵ巹ũ Բ  ǥ Ŀ ⺻ IP ˸ 
   Ѵ.    ̴ ī常 Ʈ̸
  ϱ ؼ  ̴  ڵ   eth1
  eth0:0 ġȯ϶.

   ī Ȳ, DHCP  ϴ  ٶ ʴ.

    ̺  Ǵ ADSL ڽ 꿡 Ⱦƶ.  ,
  ϶.

  3.  Ʈŷ ϱ

  , ݱ  Ʈ ǻͿ  ġߴ. 
  Ʈũ ī  ϳ ߰, ͳݿ  ߴ. ׷,
  츮   ̰  ͵   ʾҴٰ
   ̴.

  rootμ α ϶.     ô  rootμ
  α ߴٰ Ѵ.

   Ŀ   ̴ ī带 eth0 eth1μ Ѵ.
  ʹ  װ͵鿡  ϰ    ̴. ַ
  ,    ̴.    50% ̵
  Ѵٸ, Ǻϴ ""  ִ. 带  ǻ͸
  å     г(back panel)  ϰ Ѵ.
  (  װ    ΰ ϰ Ǵ Ͱ  ϵ
  Ѵ.)   ī eth0̴.  --  ణ ŷ
    ̰  𸥴. ,   eth0 eth1 
      ξ.

  , eth0 eth1 Ŀο  ڵ νĵǴ θ .
  ifconfig eth0 ifconfig eth1 ԷѴ.  쿡 ־,  Ŀ
  ī带 νϰ ,  (ڿ      
  Ͽ) ̿   ƾ Ѵ:

  eth0   Link encap: Ethernet   HWaddr 00:60:67:4A:02:0A
         inet addr:0.0.0.0  Bcast:0.0.0.0  Mask:255.255.255.255
         UP BROADCAST RUNNING MULTICAST  MTU:1500  Metric:1
         RX packets:466 errors:0 dropped:0 overruns:0 frame:0
         TX packets:448 errors:0 dropped:0 overruns:0 carrier:0
         collisions:85 txqueuelen:100
         Interrupt:10 Base address:0xe400

   Ŀ Ʈũ ī带 ν Ѵٸ ̿    
  ̴:

  eth0: error fetching interface information: Device not found.

  3.1.  Ʈũ ̹ ϱ

   ī带   ã   Ѿ . ƴϸ,  
  о.

  , ̹ ƴ ٿ  ī尡 ϳ Ȥ  ΰ Ŀο 
  νĵ ʴ´. , ̰   ʴ´. ݵ ؾ 
   ī带 ã  Ŀο    ˸ ̴.
  ⿡ 쿩 ,  θ ٷ  ̴.  
    Ethernet HOWTO ٲپ. ⿡    
  ִ.

  o   PCI Ʈũ ī带  ִ.  ̹ 
      ŭ ֽ  ƴ϶ Ѵٸ,  Ƹ 
     ̴.  /proc/pci  صϰ   
     ν Ʈũ ī( ٸ ͵)     ˼
     ִ.

  o   ISA Ʈũ ī带  ִ.  ī尡 ۵ϴ
     IO ⺻ ּҿ IRQ  ˾   ־  ̴. 
     Ŵ  ִ, ´°? ´°?  ׷ , ̹
     ۻ  Ʈ ãƳ  ¶  ڷᰡ ִ ƴ
      ȸ  ̴. ƴϸ,   DOS   
     , DOS ϰ ּҿ IRQ ǵϰ ϴ 
     α׷(setup program) ִ ˾ .

  o   ISA ÷  ÷ ī带  ִ. 켱 
     ī带 ϴ    ̴. -- Plug'n'Play HOWTO
     о. ེԵ, ϴ  ī带 ϰ Ǹ IO ⺻
     ּҿ IRQ  Ȯϰ ˰  ̴.

  ,  eth0 eth1    ˱ 
  Ethernet HOWTO compatibility page Űܰ ī带 ãƳ  ִ.
  õ ̹ ī尡 ʿ  𸣴 Ư ɼǿ  
  ޸϶.  ζ.

     ! ϰ   /etc/conf.modules̴.
    ؽƮ (text editor)   . 
  Ͽ Ե  ִ ſ  ɼ  ֱ   μ
   ڽ Ʈ̸  ̴.  VIA Rhine Ĩ  PCI
  10/100Mb ī 10Mb NE2000 ISA ǰ(clone) .  
  Ʈũ  100Mb ī带, ܺ   10Mb ī带 Ѵ.
   /etc/conf.modules  ̰Ͱ :

  alias parport_lowlevel parport_pc
  alias eth0 ne
  options ne io=0x300 irq=10
  alias eth1 via-rhine

   conf.modules     δ.

  o  ù °     Ʈ ϴ ̴. Ƹ
     е    ̴.  ״  ζ.

  o   ° (alias eth0 ne) eth0 ġ  ne ̹
     ϵ Ŀο ˸.

  o   ° (options ne io=0x300 irq=10) ne ̹ ISA ī带
     ߰ϰ  IO ּҿ IRQ ͷƮ ˸.   ISA
     ī带  ִٸ, Ƹ ̷  ø Ͽ  ̴.
      ī带  Ȯ  Ͽ ̹, IO IRQ
     ڸ üϱ⸸ ϶.

  o   ° (alias eth1 via-rhine) eth1  via-rhine ̹
     ϵ Ŀ ˸.  eth1 ī尡 PCI ī̱  IO
     Ǵ IRQ   ʿ䰡 : PCI νý ġ
     ڵ Ѵ.

     ī带  conf.modules alias  ٴ
   ϰ,  ISA ī带  options  Ȯϰ  
  ̴.  ġϴ    ̴ ī带 
  conf.modules ̹   ̹   𸥴.

   conf.modules ϴ  ϷϿ , ifconfig eth0
  ifconfig eth1 ٽ õ϶.  ۻ Ŵ   IO
  ּҿ IRQ Ǽϰ ִٸ     ̴.

  3.1.1.     Ʈũ ī

  ׷,  ¥ ¥ Ͽ,  
  Ʈ̸   Ʈũ ī带   .  װ͵
  Բ ۵ϵ   ٸ?   . װ͵ ϵ ϴ
   /etc/conf.modules Ȯ  ϴ   ̴.
     ּҿ IRQ ȣ , ȭ   NE2000
  ǰ ߴٰ ϰڴ. /etc/conf.modules  ̰Ͱ :

  alias eth0 ne
  alias eth1 ne
  options ne io=0x330,0x360 irq=7,9

  The addressing options are all given on the same line, and the first
  number for each addressing type is for eth0, the second number for
  eth1.  ּҸ ϴ ɼ  ࿡  ־,  ּҸ
  ϴ ¸  ù °  eth0  ̰,  ° 
  eth1  ̴.

  3.2.   Ʈũ ϱ

  " Ʈũ"   /繫  ϰ Ǵ
  Ʈũ̴.  "ܺ Ʈũ"  ڽ ٸ ʿ ִ Ը
  ù ͳ̴.  ü,  Ʈũ  ڽ 
  ܺ Ʈũκ  ݸ ̴.  ̴ ߰  
  ȭμ  ̴.

  3.2.1.  Ʈũ ġ

   ̹ ۵ϰ ְ ifconfig eth0 eth1   
   Ƿ   Ʈũ Ͽ ϴ ̴. eth1
   Ʈũ, eth0 ܺ ġ дٰ ϰڴ.

    Ʈũ ο Ʈũ  ̰, ̸ ؼ 
  Ʈũ    Ư Ʈũ ְ  ̴:
  192.168.1.0.  ģ Ű⸦ ϸ, ̴ "ο C
  Ŭ"̴.

  켱 Ʈŷ   Ȯ ʿ䰡 ִ.
  /etc/sysconfig/network Ͽ   ִ Ȯ϶.

  NETWORKING=yes
  FORWARD_IPV4=yes

  ù °  Ʈ(boot) ÿ Ʈũ ġ ҷ  
  ˸.  °  IP (IP forwarding)  ϵ 
  ˸.  4 ŽĿ̵ ϴ    ̰
  ʿϴ.

   6.2 : IP ۰ ŽĿ̵ ϰ ϱ ؼ
   6.2 /etc/sysctl.conf Ͽ  ʿ Ѵ.  
  ִ Ȯϰ Ȯ  Ѵ:

  net.ipv4.ip_forward = 1
  net.ipv4.ip_always_defrag = 1

  ް  Ļǰ   Ʈũ ̽ 
  /etc/sysconfig/network-scripts 丮  ϵ鿡 Եȴ. 
  丮   Ϸ ifcfg-eth1 .  ifcfg-eth1 
      д:

  DEVICE=eth1
  IPADDR=192.168.1.1
  ONBOOT=yes

   ڵ Ʈ ÿ eth1 ϰ  IP ּҸ ֵ Ʈũ
  ũƮ ˸.   ɾ Բ   Ͽ
   Ʈũ Ȱȭ ϶: /etc/rc.d/init.d/network restart

  3.2.2.  DHCP 

  DHCP  IP ּҸ    Ʈũ  ġ
  ڵ  ̴.  ̰     ſ
  ϴ. ׵ ڽŵ   ű⸸ ϸ  ϰ
    ִ.    Ʈũ 󿡼 DHCP  
  ʴ´ٸ   Ѿ .

  켱  DHCP  ġǾ Ȯ ʿ䰡 ִ.  CD
  Ʈϰ dhcp RPM ġ϶.  /etc/dhcpd.conf  Ͽ
     ִ´:

  subnet 192.168.1.0 netmask 255.255.255.0 {
    range 192.168.1.2 192.168.1.60;
    default-lease-time 86400;
    max-lease-time 86400;
    option routers 192.168.1.1;
    option ip-forwarding off;
    option broadcast-address 192.168.1.255;
    option subnet-mask 255.255.255.0;
  }

     ڽ ĳ   (caching domain name
  server) ϰ Ѵٸ,   ɼ ߰϶:

  option domain-name-servers 192.168.1.1;

  If you know your outside DNS addresses and you are not going to use
  the Linux box for DNS, insert the following option, where x.x.x.x and
  y.y.y.y are IP numbers of the DNS servers:   ܺ DNS
  ּҸ ˰ ְ DNS   ڽ   ̶,
    ɼ ߰϶. ⼭, x.x.x.x y.y.y.y DNS  IP
  ȣ̴.

  option domain-name-servers x.x.x.x, y.y.y.y;

    (Windows) ǻ͸   ڽ
  (Samba)    ̶,  ڽ ⺻ WINS
  ¡(browsing)  ϵ   ɼ ߰϶:

  option netbios-name-servers 192.168.1.1;
  option netbios-dd-server 192.168.1.1;
  option netbios-node-type 8;
  option netbios-scope "";

  ٿ WINS ϴ     .   
  ħ ʿϴٸ SMB HOWTO ϰ, ű⼭ ϶.

     ܰ谡   ִ. , /etc/rc.d/init.d/dhcpd
   Ͽ    ã´.

  /sbin/route add -host 255.255.255.255 dev eth1

   DHCP Ŭ̾Ʈ DHCP 信 ־ Ư εĳƮ ּҸ
  ʿ ϰ,   /TCP  װ   Ѵ.
    Ͽ   ã   ߰϶.  
  ׷Ͱ   ã´ٸ װ ϴ ġ eth1 Ȯ϶.

   ܰ ⺻ ġμ eth1 ϵ /etc/rc.d/init.d/dhcpd
   ϴ ̴.   

  daemon /usr/sbin/dhcpd

  

  daemon /usr/sbin/dhcpd eth1

   ü϶.   DHCP õ غ ƴ. 켱  Ͽ
  DHCP  Ѵ: /etc/rc.d/init.d/dhcpd start

  , DHCP  Ʈ(re-boot) ÿ   ȮϿ
  Ѵ.  DHCP   RPM Ű Ź  ϴ 
  ϴ ø  ʴ´.  ׷, chkconfig dhcpd on 
  ν  ϵ  ̴.

      /etc/rc.d Ʒ پ (runlevel)
  丮 DHCP õ ũƮ ߰Ѵ.  3 5(multiuser
  console multiuser X) DHCP  ۵ȴ. 
  0,1,6(shutdown, single user, reboot) DHCP  .

  3.2.3.  Ŭ̾Ʈ ǻ

    DHCP Ͽٸ, Ŭ̾Ʈ ǻ͸ ϴ 
  ſ :  DHCP  ɸ Ѵ.  ǻͿ 
  ̰ "",   "Ʈũ" ɼ   Ѵ.
  "TCP/IP"  ã, ""ϵ Ѵ. "ڵ IP ּҸ
  ޱ" شϴ ڽ üũϰ,  ϰ, Ʈ Ѵ.

  Ʈ ϱ     Է   𸣰ڴ: tail
  -f /var/log/messages ̰  ý α׸ Ͽ Ѻ
  ̴.     ̸,  ǻ͸ Ʈ  , IP
  ּҸ û    ̰, DHCP  ϴ   
  ̴. Control-C tail -f  Ѵ.

    DHCP  ʾҴٸ,    . ٽ
  ""κ "Ʈũ" ɼ , TCP/IP  ϱ
   Ѵ.  Ŭ̾Ʈ ǻ 192.168.1.0(Ʈũ
  ּ), 192.168.1.255(εĳƮ ּ) Ǵ 192.168.1.1(
   )  192.168.1.0 Ʈũ   ּҵ Ҵ
   ִ.     ǻ  ּҸ οؼ  ȴ.
  "Ʈ" ּҸ 192.168.1.1 ϶. ׷, ܺη 
  Ʈ(traffic)  Ʈ̸  .

  The IP Masquerading HOWTO has very detailed information on client
  configuration in the Configuration Section.  IP Masquerading HOWTO
  Configuration Section Ŭ̾Ʈ   ſ  
  .

  Ϲ, Ŭ̾Ʈ ǻ͸ ϱ ؼ DHCP  
  ϰų 192.168.1.1 Ʈ̸  192.168.1.X Ʈũ
  ּҸ  ҴѴ.   ĳ DNS (Ʒ )
  ϰų DNS Ʈũ ڿ  Ҵ ּҷ ٸ DNS
     192.168.1.1 ǵ Ѵ.

  3.2.4.  DNS 

   ڽ ĳ DNS  ϴ  ݼ ӵ ()
  ų ̴.  밳 Ǵ DNS ּҴ  Ʈũ ο
  ĳ Ǿ ܺηκ  ʿ䰡  ̴.

       DNS  ִٸ  ͵
    Ѵ.  DNS HOWTO ̿ ϰ, DNS and BINDå 
  (׸ ſ ط )  ̴.

   Ŭ̾Ʈ  ĳ  ̿ϱ Ͽ 
  Ʈ̸ װ͵  DNS  ϵ ݵ Ǿ
  Ѵ.  3.2.2  DHCP ڴ ̸ ϴ  
  ̴.   Ŭ̾Ʈ ǻ͸  ռ ϰ ִٸ,
   IP ּҸ ϱ    Ʈ  DNS 
   ϴ.

  DNS  ġϱ Ͽ  bind RPM ġѴ.  
  caching-nameserver RPM ġѴ.  ,  
  غƴ.

  ġʿ , ĳ   ۵ ̴. ׷  
  ͳ  DNS  IP ּҸ ȴٸ, /etc/named.conf 
  Ͽ directory  Ŀ   ߰ν 
  ̶ ų  ִ (⼭, x.x.x.x y.y.y.y  DNS 
   DNS ̴):

  forwarders { x.x.x.x; y.y.y.y; };

     DNS  ־ ּ ˻ ־ ͳ
     켱 ISP DNS  ȸϵ Ѵ. ISP
    DNS   ĳ ϰ,     ִ
  ͺ ξ   Ѵ.

  named   12        Ȱ
  ־. ׷,   ֽ  ϰ ־ ϰ, 
  ȭϱ  ⺻     ϴ  ſ ߿ϴ.

  1. bind  ϰ  8.2.2 Ǵ ȮѴ.  Red Hat
     Updates Ǵ Mandrake Updates Ʈ   ֽ 
     ϶.

  2. /etc/named.conf Ͽ forwarders  Ŀ allow-query {
     192.168.1/24; 127.0.0.1/32; };  ߰ν  Ʈũ
          ϶.

  3.  Ӽ root ϴ  ϶.  
      root  ̶,  ͽ÷(exploit) ̱
     ̿ root  ϰ  ̴.    ,
     nobody ,  ڷ Ѵٸ,   ͽ÷
        ִ.    nobody Ϸ,
     /etc/rc.d/init.d/named  Ͽ daemon named  daemon
     named -u nobody -g nobody ģ.

   DNS  Ʈ ÿ   ȮѴ: chkconfig named
  on.  ٽ, ̴  Ʈ ÿ  (3 5) ۵
  ̶  Ѵ.

  ,   DNS    ִ: /etc/rc.d/init.d/named
  start

  3.2.5.   Ʈũ ϱ

  ܺ Ʈũ   (ͳ 󿡼 ٸ DNS 
  Ǿ ϱ ) DNS 񽺴 ۵  ̴. ׷,
  ping α׷ Ͽ ⺻   ¸ ˻  ִ.

   Ŭ̾Ʈ ǻ   뿡 ͹̳ (MSDOS) â , ping
  192.168.1.1 ԷѴ. ̴ Ŷ Ģ   
  ǻͷ ϰ   ǻʹ Ŷ ǵ ְ 
  ̴.   ۵ ̸,   Ŷ ȸ   ƾ
  Ѵ.

  3.3.  ܺ Ʈũ ϱ

   Ⲩ ܺ Ʈũ   ִ. ͳ ڰ 
  󸶳  ϴ ,  ̰  ̴. ADSL
  ̽ ټ ڼ ϴ ADSL mini-HOWTO ִ.    Cable
  Modem HOWTO ã  ,  װ ũ ڴ.

  κ ܺ ῡ  ֿ  IP ּҸ  ̴.  
  ͳ ڴ ̺ Ǵ ADSL   IP ּҸ 
  ش.   쿡  . , κ ڵ DHCP 
    ٲپ. ̰   ǻͰ 
  eth1 ̽ 󿡼 DHCP ,  eth0 ̽ 󿡼 DHCP
  Ŭ̾Ʈ Ǳ  ̶  ǹѴ.

  Additionally, many providers have taken to providing their services in
  specialized non-standard ways which assume their customers will be
  using Windows.  Some of those cases will be discussed at the end of
  section 3.3.2.  Դٰ,  ڵ ׵  
    ̶ ϴ Ưȭ ǥ ƴ  񽺸
  ϴ Ϳ  ִ.  ׷     3.3.2 
  κп ǵ ̴.
  3.3.1.   IP  

    ͳ ڰ   IP ּҸ ҴѴٸ
    ó ִ. , ο ̽  
  ϰ, /etc/sysconfig/network-scripts/ifcfg-eth0,   ȿ
  ִ´.

  DEVICE=eth0
  IPADDR=x.x.x.x
  NETMASK=y.y.y.y
  ONBOOT=yes

   ͳ ڿ  ־  x.x.x.x y.y.y.y
  ä⸸ Ѵ.   /etc/resolv.conf  Ͽ  
  ԷѴ.

  search provider_domain_here
  nameserver n.n.n.n
  nameserver m.m.m.m

  provider_domain ͳ ڿ  ޵Ǿ Ѵ. ,  DNS
    DNS  n.n.n.n m.m.m.m ࿡ ԷѴ.  
   ڽ DNS  Ͽٸ ٸ Ӽ Ի 
  ϳ  ߰Ѵ: nameserver 127.0.0.1. ̰ ܺ  DNS
   ûϱ     ĳ  ϵ
  Ѵ.

  3.3.2.  DHCP ϴ 

   ͳ ڰ DHCP  Ѵٸ, ο ̽ 
   ϰ, /etc/sysconfig/network-scripts/ifcfg-eth0,  
  ȿ ־  ʿ䰡 ִ:

  DEVICE=eth0
  BOOTPROTO=dhcp
  ONBOOT=yes

   dhcpcd Ŭ̾Ʈ   ýۿ ġǾ ȮѴ.
   CD  dhcpcd RPM Ű ġѴ.

   ο Ʈũ   ̴.
  /etc/rc.d/init.d/network restart  ϱ⸸ ϶.  ping
  Ͽ  ܺ  ϶.  www.yahoo.com  ͳ
   ǻ͸ (ping) ϰ   ǵ  ƶ.

  3.3.3.  ԰ ܵ

   Ȳ   ſ  Ȳ ٸ 𸥴.
  ⿡  ̿     ؿ   
  ڿ ִ.  ũ   ߰ϵ ڱ    John
  Mellor Ѵ.

  3.3.3.1.  ̴ 󿡼 PPP (PPPoE)

  ټ ADSL ڵ( , Bell Atlantic) ο  " PPP
  over Ethernet"  (PPPoE) Ͽ 񽺿 Ͽ Ѵٰ
  ϰ ִ.    ׵  Ŭ̾Ʈ α׷
  ,  ڵ״ ״  ϴ.
  ེԵ, PPoE  ̰,  Ͽ ϱ
   ټ   ߿ ִ.

  o  Roaring Penguin PPPoE Client  Kerr First  
     򰡵Ǿ õǾ.

  o  PPPoE on Linux for Bell Sympatico

  o  PPPoE on Linux for Sympatico (General Info) (Linux Info)

  3.3.3.2.  ٺ DHCP Ʈ

  Ʈũ ڰ ϴ, Ư ϴ Ʈ  ϳ 
  񽺸  ȣƮ Ī, Ǵ   Ʈũ ī忡
  Ű ̴.  ̰ 긦 Ͽ   ǻͰ 
  ̴ Ʈ  ȴ κ  ׷ ϰ ȣѴ. (,
    ŽĿ̵ ν    
   ȿ   ̰ ̺ ȸ  ε 
  Ѵ!)

   ڰ  ȣƮ Ī οϰ ׵ 񽺸
  ϱ    ڽ  Ī  
  Ѵٸ,  DHCP κ ּҸ û   
  ڽ  ȣƮ Ī ϴ ȮϿ  ̴.

  ̽  Ͽ BOOTPROTO dhcp    DHCP
  Ŭ̾Ʈ ȣȴ. ׷ ȣƮ Ī  ʰ ȣȴ.
  ȣƮ Ī Ͽ α׷ ȣϱ ؼ,  6.1,
  /etc/sysconfig/network  Ͽ   ϶:

  HOSTNAME=

  ̸ ǵϷ:

  HOSTNAME=your_isp_assigned_name

  ̰    Ϳ ۵   𸥴. 
  ۵ , /sbin/ifup ũƮ ϰ dhcpcd pump ȣ
  -h $HOSTNAME ġ ϴ .  ׷ , װ͵
  ߰϶. ׷ ȣ /sbin/dhcpcd -i $DEVICE -h $HOSTNAME
  /sbin/pump -i $DEVICE -h $HOSTNAME .

  3.3.3.3.  Road Runner

  Road Runner ̺ 񽺴    ֱ  ݵ
  Ǿ ϴ Ư α ó . ེԵ, 
  Linux Road Runner HOWTO ̿ ϴ.

  3.3.4.  Ʈũ Ʈ 

    ǰ ź 𸣰ڴ.   ġ  
  ifconfig Է϶.  Ʈ ǻͿ ̿  δ:

  eth0  Link encap:Ethernet  HWaddr 00:60:67:4A:02:0A
        inet addr:24.65.182.43  Bcast:24.65.182.255  Mask:255.255.255.0
        UP BROADCAST RUNNING MULTICAST  MTU:1500 Metric:1
        RX packets:487167 errors:0 dropped:0 overruns:0 frame:0
        TX packets:467064 errors:0 dropped:0 overruns:0 carrier:0
        collisions:89 txqueuelen:100
        Interrupt:10 Base address:0xe400
  eth1  Link encap:Ethernet  HWaddr 00:80:C8:D3:30:2C
        inet addr:192.168.1.1  Bcast:192.168.1.255  Mask:255.255.255.0
        UP BROADCAST RUNNING MULTICAST  MTU:1500 Metric:1
        RX packets:284112 errors:0 dropped:0 overruns:0 frame:1
        TX packets:311533 errors:0 dropped:0 overruns:0 carrier:0
        collisions:37938 txqueuelen:100
        Interrupt:5 Base address:0xe800
  lo    Link encap:Local Loopback
        inet addr:127.0.0.1  Mask:255.0.0.0
        UP LOOPBACK RUNNING  MTU:3924  Metric:1
        RX packets:12598 errors:0 dropped:0 overruns:0 frame:0
        TX packets:12598 errors:0 dropped:0 overruns:0 carrier:0
        collisions:0 txqueuelen:0

  eth0 ̽ ٸ ܺ IP ּҸ , eth1 ּҴ ο
   ּҸ .

  route  Էν Ʈũ ͸   ִ. 
  Ʈ ǻͿ ̿  δ:

    Kernel IP routing table
    Destination     Gateway      Genmask         Flags Metric Ref Use Iface
    255.255.255.255 *            255.255.255.255 UH    0      0     0 eth1
    192.168.1.0     *            255.255.255.0   U     0      0     0 eth1
    24.65.182.0     *            255.255.255.0   U     0      0     0 eth0
    127.0.0.0       *            255.0.0.0       U     0      0     0 lo
    default         24.65.182.1  0.0.0.0         UG    0      0     0 eth0

  ⼭ ܺ Ʈũ  ,  Ʈũ  , 
  ġ  , Ư 255.255.255.255 εĳƮ ּҰ 
  , ⺻ Ͱ ͳ  Ʈ̸ Ű  
    ִ.  Ϻϴ!

    ܺ Ʈũ  Ʈũ .  δ 
  ̸ ϴ ̴. ׷,    ܺηκ 
    Ѵٴ  ȮѴ.

  3.4.  

  ADSL Ǵ ̺  ͳݿ  Ǵ   
  ϳ  ǻͰ   7 ϰ, Ϸ 24 ð  
    Ǿ ִٴ ̴.  Ʈ̷ ϴ
    ٸ ǻ͸ ߱   ҽŲ.  
  ͳݿ  ,    ڽ   
  ϴ. ׷,  ,  ڽ   ϰ 
   ⺻     ˷  ̴.

  ,     ʿ䰡 ִ. ̰ ϱ 
  /etc/hosts.deny  Ͽ ̿ Ȱ Ȯ϶:

  #
  # hosts.deny  This file describes the names of the hosts which are
  #             *not* allowed to use the local INET services, as decided
  #             by the '/usr/sbin/tcpd' server.
  #
  #            The portmap line is redundant, but it is left to remind you that
  #        the new secure portmap uses hosts.deny and hosts.allow. In particular
  #             you should know that NFS uses portmap!
  ALL: ALL

  ̰ --   95% ϴ -- "TCP wrappers" 
  ȣƮκ   źϵ ˸. װ ſ Ǹ
  Ģ̴!  ׷ װ    Ʈũκ 
  ڽ Ǵ ͵    ̴. ̴ Ȥ. ׷, 
   ܸ  ̴.  /etc/hosts.allow  Ͽ ̿
  Ȱ Ȯ϶:

  #
  # hosts.allow  This file describes the names of the hosts which are
  #              allowed to use the local INET services, as decided
  #              by the '/usr/sbin/tcpd' server.
  #
  ALL: 127.0.0.1
  ALL: 192.168.1.

  This tells the "TCP wrappers" that they can allow connections to all
  services from the local device (127.0.0.1) and from your home network
  (192.168.1.).  ̰ "TCP wrappers"  ġ(127.0.0.1)κ
  ׸   Ʈũ(192.168.1.)κ  񽺿 
    ִٴ  ˸.

   Ͳ ڹ踦 Ͽ   ܺ  Ҵ.
      溸 ý ߱⸦ Ѵٸ, ξ 
    ־  ̴.     ڽ 
    ⸦ ϸ Security HOWTO ϱ⿡  ̴.

  4.  ŽĿ̵ ϱ

   ܰ . Ⱑ  ۵Ǵ ̴. IP ŽĿ̵
   ϴ     ϳ̴.  
  ϴ   ǰ ,  ȿ ʴ: 
  386 Ȯϰ IP ŽĿ̵ 񽺸 ü ߰  ũ⸦
   繫ǿ Ѵ. ׷, ֵ(add on) ŽĿ̵ Ű
   ͵ ,  95   Ѵ.  (η , 
   ֱ 򰡱翡,   2000 ֵ Ʈ
  ̵ " "  ̶ о.   Ʈ
  Ǹ ȸ ũμƮ 翡  " ̰ ȮǴ" ó
  δ. ׷,  386 󿡼  2000 ַ õ 
  õ ʰڴ.)

     ǳ ȭ ɷ .  ϰ 
   ɼ ִ  װ ϰ  ̴.  
  ڿ  ȭ ϴ   ʹٸ ̷ ظ
   Firewalling HOWTO,  2.2.X(׸ Ȯ忡  
  6.X) Բ Ǵ ο ipchains ȭ    
   IPChains HOWTO    о Ѵ.  ŽĿ̵ 
   ڼ   ſ Ǹ IP Masquerading HOWTO ̿
  ϴ.
  ϴ    ܺ Ʈŷ  ϴٸ, 
  ŽĿ̵ ϴ  ſ ſ . /etc/rc.d/rc.local 
  Ͽ  Ʒ ʿ   ߰϶.

  # 1) Flush the rule tables.
  /sbin/ipchains -F input
  /sbin/ipchains -F forward
  /sbin/ipchains -F output
  # 2) Set the MASQ timings and allow packets in for DHCP configuration.
  /sbin/ipchains -M -S 7200 10 60
  /sbin/ipchains -A input -j ACCEPT -i eth0 -s 0/0 68 -d 0/0 67 -p udp
  # 3) Deny all forwarding packets except those from local network.
  #    Masquerage those.
  /sbin/ipchains -P forward DENY
  /sbin/ipchains -A forward -s 192.168.1.0/24 -j MASQ
  # 4) Load forwarding modules for special services.
  /sbin/modprobe ip_masq_ftp
  /sbin/modprobe ip_masq_raudio

     FTP RealAudio ϴ Ŀ   Ʈũ
   ǻ͸  ۵ϵ ߰Ѵ.   ʿϴٸ, ÷
   Ư 񽺸  ٸ  ִ:

  o  CUSeeMe (/sbin/modprobe ip_masq_cuseeme)

  o  Internet Relay Chat (/sbin/modprobe ip_masq_irc)

  o  Quake (/sbin/modprobe ip_masq_quake)

  o  VDOLive (/sbin/modprobe ip_masq_vdolive)

   ŽĿ̵ õѴ. /etc/rc.d/rc.local  Ͽ
  rc.local ũƮ ϶.  ٸ ǻ͵   뿡
  ɾƼ   õ϶.  ٸ,     
  .

  5.  Problems 

  ̿    Ͽ ߸   ִ ͵  
  ִ.  Ư 찡  ̴. ɼ ִ  ټ 
   ܺ Ʈũ ġ   ΰ ִ.  õϰ
      ̴.   ߸ Ǿ ˾
  , Ư      ڼ ãƳ 
  ֵ ϱ Ͽ  Ʒ ũ ߰ ̴.
  pramsey@refractions.net  ϴ  ϰ ܶ.

  5.1.  ICQ ۵ ʴ´

  ICQ  κ ŽĿ̵ 󿡼  ۵Ѵ. ٸ κ
   ۵ ʴ´.  ׷, ŽĿ̵ 󿡼 ICQ ϴ 
    (׷ ü ƴ)  þ ִ   beta quality
  ICQ module ִ.  ҽ ڵ  Ͽ Ե README  
   ϴ  Ѵ.  ϴ   ϰ ġϿٸ,
  /sbin/modprobe ip_masq_icq ȣ϶.

  5.2.   6.X ƴ Į 2.X  ִ.

  ˾ ξ ϴ   ߿   ִ:

  1. ̽  /etc/sysconfig/network-scripts/ifcfg-eth0 &
     eth1 GATEWAY=xxx.xxx.xxx.xxx  ( ̽ Ʈ
     ̽ IP ּҸ ϰ Ʈ ̽  
     Ʈ IP Ѵ)

  2. /etc/sysconfig/daemons/dhcpd ũƮ ROUTE_DEVICE eth0 ƴ
     eth1 ϴ ȮѴ.

  3. /etc/dhcpd.conf ̽  θ    ʿ
     Ѵ.  (   °   ٿ   
     Ȯ Ѵ:  ٸ ɼ  subnet 216.102.154.201
     netmask 255.255.255.255 { } DHCP  eth0 eth1 Ӹ ƴ϶
     (fallback) 󿡼 ϰ(listen) Ѵ.)

  4. /etc/rc.d/init.d/dhcpd ũƮ add host route 255.255.255.255
     ߰ ƶ.  Į ̹  ƴ. ũƮ 
     eth0 ϴ θ eth1 ϰ Ȯ϶.

  5.3.      밡   Ǳ⸦ ٶ

    Ա ! ׷, ̷  ȳ ۵ϱ ؼ
    IP ּҸ   ʿ䰡 ִ.   
  ּҸ ٸ, ּҰ    IP ּҰ Ʈ 
   ŵǾ  ϵ   ߰ ũƮ
   ʿ䰡 ִ.

  ϶, ܺ Ʈ   ϴ   "" 
    "" ٴ . ׷ ſ ϰ ޾
  鿩  ְ,  ų ƿ   degredation ġ ȴ.
   Ŀο ִ IP ŽĿ̵ ڵ ۿ ϳ Ʈũ
  ̾(network layer) 絵  Ŷ Ͽ   
  ִ  ϴ ɷ̴. ipmasqadm ƿƼ ׷ ɷ ̿ϱ
   ۵Ǿ.

      ipmasqadm  ް ǵ巹ũ  Բ
   ʴ´. ׷   Ʈκ  ; 
  ̴. -- ̿  RPM Ӹ ƴ϶ ҽ ڵ嵵 ִ.

  ϴ  RPM , ġ϶.   /etc/rc.d/rc.local
  Ͽ   ߰϶:

  /usr/sbin/ipmasqadm portfw -f
  /usr/sbin/ipmasqadm portfw -a -P tcp -L x.x.x.x 80 -R 192.168.1.x 80

  ù °  Ʈ  Ģ  ,  °  ܺ
  ̽  Ʈ 80κ    Ʈ 80 
  ߰Ѵ. ܺ  IP ּҴ x.x.x.x ڸ  ,  
  IP ּҴ 192.168.1.x ڸ .

   Ʈ 80  ܺ û ϰ   Ʈ 80
   ̴.       κ 
  Ʈ Ʈ 80 ڳ ϰų ϴ δ ̰ 
  Ѵٴ  ϶: Ʈ ڴ ܺ ̽ 
  û   ̴.

