Routing – but you knew that already

From the RTFM

In this example, your client machine is connected to a firewalled LAN through ethernet device eth0. Its IP address is; its network is; its router is

Your network administrator may have told you to use as default router, but you shouldn’t. You should only use it as a route to the client side of the firewall.

Let’s suppose the client side of your firewall is made of networks and, and of host To make them accessible through your client router, add these routes to your global network startup script:

route add -net netmask gw
route add -net netmask gw
route add -host gw

You must also keep the route to the client’s local network, necessary for linux kernel 2.0 and earlier, but but unnecessary for linux kernel 2.2 and later (that implicitly adds it during the ifconfig):

route add -net netmask dev eth0

On the other hand, you must remove any default route from your scripts. Delete or comment away a line like:

route add default gw

Note that it is also possible to remove the route from the running kernel configuration without rebooting, by the following command:

route del default gw

Just so that it’s all in one place 🙂

Leave a Reply

Your email address will not be published. Required fields are marked *