[Chilli] Hide all 'users' behind one 'mac' ?

Benoit noteris bnoteris at odbee.com
Thu Nov 5 11:08:31 UTC 2009


Hi Derek, 

Normally by default your coova ap is nating connexion like this draw


---Internet---[pppoA/eth0](coovaap)|nat|[private ip tun/eth1]--Lan--

I' pretty sur that you can't masquerading twice in same router, and I 'don't
understand the interest of what you want to do if you want direct connected
customer without connection just add another interface in trunked port that
you plug in you switch and just do normal routing without coova like Point
to point connection like this draw :

---Internet---[pppoA/eth0](coovaap)|nat|-[trunk]
							 |   |(vl10)
						(Vl20) |  [private ip
tun/eth1]--Lan--client
                                          [point to point to client]
This is just one idea after you've lot's of solution ofer to you.

But to hide client behind one mac address the only way is to route again in
layer 3

Cheers,


-----Message d'origine-----
De : Derek C [mailto:derekchilli at hssl.ie] 
Envoyé : jeudi 5 novembre 2009 10:51
À : Benoit noteris
Cc : chilli at coova.org
Objet : Re: [Chilli] Hide all 'users' behind one 'mac' ?

Hi Benoit,

I was wondering if I could do exactly what you are doing but do it all in
one openwrt router (the same router running Coova Chilli and doing the
NAT).  I was thinking about trying it the LAN eth0 port on the router as
the Masqueraded port (masquerading out the tunX Coova Chilli device).

I'm not sure if this would work though - I have a feeling that Coova
Chilli may see the different mac addresses on the eth0 device even with
the masquerading.

I'll think I'll just have to try it and see...

Derek


On Thu, November 5, 2009 9:11 am, Benoit noteris wrote:
>

> Hi Derek,
>
>
> We are doing That with Ethernet router and it's working well with nat.
> But we use public ip address and so if you use private network I don't
> know what's will happen if you make double nat, but there is no reason
> that don’t work for me.
>
> Cheers,
>
>
>
> -----Message d'origine-----
> De : chilli-bounces at coova.org [mailto:chilli-bounces at coova.org] De la part
>  de Derek C Envoyé : mercredi 4 novembre 2009 21:23
> À : chilli at coova.org
> Objet : [Chilli] Hide all "users" behind one "mac" ?
>
>
>
> Hi all,
>
>
> A little off topic (kindof):
>
>
> Is it possible to "hide" all the users of a VAP behind one "mac" for
> Coova
> Chilli Mac authentication?
>
>
> What I'd like to do is to have a wireless router where, after the user
> pays up and gains Mac based Coova Chilli authentication, they could use
the
> gateway with any number of devices (not just the computer they originally
> connected with).
>
> I'm trying to think about whether I could do this with routing &
> masquerading from the customer's VAP athX device and then out through the
> Coova Chilli tun device that it uses.
>
>
> Has anyone ever tried this?
>
>
> thanks,
>
> Derek
>
>
> --
> Derek C
> In Ireland
>
>
> _______________________________________________
> Chilli mailing list
> Chilli at coova.org
> http://lists.coova.org/cgi-bin/mailman/listinfo/chilli
>
>
> _______________________________________________
> Chilli mailing list
> Chilli at coova.org
> http://lists.coova.org/cgi-bin/mailman/listinfo/chilli
>
>


-- 
Derek C
In Ireland



More information about the Chilli mailing list