rodrigocontrib
(usa Debian)
Enviado em 06/08/2014 - 18:54h
Vamos lá:
internet <==> GW <==> GW-LAB <==> FW-RI <==> DNS
internet <==> GW <==> GW-LAB <==> FW-01
internet <==> GW <==> GW-LAB <==> FW-02
O GW-LAB fala com todos os conectados diretamente, cada um por uma VLAN diferente.
Só criei uma vlan diferente entre o FW-RI e o DNS para separa-lo das demais redes.
Vamos as Vlans:
GW-LAB <==> FW-RI Vlan-RI
GW-LAB <==> FW-01 Vlan-FW-01
GW-LAB <==> FW-02 Vlan-FW-02
FW-RI <==> DNS Vlan-Servicos
Bom, o ip do meu dns é 192.168.22.83
Abaixo meus traceroutes dos meus firewalls/GW para o meu dns:
root@FW-01:~# traceroute 192.168.22.83
traceroute to 192.168.22.83 (192.168.22.83), 30 hops max, 60 byte packets
1 192.168.22.13 (192.168.22.13) 0.856 ms 0.717 ms 0.551 ms
2 192.168.22.242 (192.168.22.242) 1.790 ms 1.714 ms 1.617 ms
3 192.168.22.83 (192.168.22.83) 3.433 ms 3.411 ms 3.179 ms
root@FW-01:~#
root@FW-02:~# traceroute 192.168.22.83
traceroute to 192.168.22.83 (192.168.22.83), 30 hops max, 60 byte packets
1 192.168.22.161 (192.168.22.161) 0.332 ms 0.714 ms 0.422 ms
2 192.168.22.242 (192.168.22.242) 1.627 ms 1.546 ms 3.786 ms
3 192.168.22.83 (192.168.22.83) 3.699 ms 3.603 ms 3.506 ms
root@FW-02:~#
root@FW-RI:~# traceroute 192.168.22.83
traceroute to 192.168.22.83 (192.168.22.83), 30 hops max, 60 byte packets
1 192.168.22.83 (192.168.22.83) 0.900 ms 0.763 ms 0.661 ms
root@FW-RI:~#
root@GW-LAB:~# traceroute 192.168.22.83
traceroute to 192.168.22.83 (192.168.22.83), 30 hops max, 60 byte packets
1 192.168.22.242 (192.168.22.242) 0.449 ms 0.712 ms 0.613 ms
2 192.168.22.83 (192.168.22.83) 1.291 ms 1.069 ms 2.095 ms
root@GW-LAB:~#
Tracert do meu DNS para meus FWS/GW
Para meu FW-01
root@DNS-RI:~# traceroute 192.168.22.14
traceroute to 192.168.22.14 (192.168.22.14), 30 hops max, 60 byte packets
1 192.168.22.81 (192.168.22.81) 1.666 ms 1.538 ms 1.446 ms
2 192.168.22.241 (192.168.22.241) 2.887 ms 3.058 ms 2.968 ms
3 192.168.22.14 (192.168.22.14) 7.727 ms 7.637 ms 7.545 ms
root@DNS-RI:~#
Para meu FW-02
root@DNS-RI:~# traceroute 192.168.22.162
traceroute to 192.168.22.162 (192.168.22.162), 30 hops max, 60 byte packets
1 192.168.22.81 (192.168.22.81) 4.004 ms 3.882 ms 3.705 ms
2 192.168.22.241 (192.168.22.241) 3.602 ms 3.514 ms 3.427 ms
3 192.168.22.162 (192.168.22.162) 3.339 ms 2.750 ms 2.706 ms
root@DNS-RI:~# ^C
Para meu FW-RI
root@DNS-RI:~# traceroute 192.168.22.81
traceroute to 192.168.22.81 (192.168.22.81), 30 hops max, 60 byte packets
1 192.168.22.81 (192.168.22.81) 0.303 ms 1.964 ms 1.877 ms
root@DNS-RI:~#
Para meu GW-LAB
root@DNS-RI:~# traceroute 192.168.22.161
traceroute to 192.168.22.161 (192.168.22.161), 30 hops max, 60 byte packets
1 192.168.22.81 (192.168.22.81) 4.102 ms 3.980 ms 3.890 ms
2 192.168.22.161 (192.168.22.161) 6.602 ms 6.522 ms 6.435 ms
root@DNS-RI:~#