Hi,
I have built a small Hotspot environment with CoovaAP on a WRT54GL.
Now I´ve got a problem with my Wireless clients. They shouldn´t be allowed to access my LAN clients.
I think I can do this with iptable rules but I don´t know how.
Heres a picture og my setup:
WWW--------Router (192.168.1.1)------------WRT-WAN (192.168.1.198)---------WRT LAN (192.168.100.1)----------WRT WLAN (10.1.0.1)
|
|
LAN (192.168.1.x)
So every Wireless user who logs on to the Hotspot gets an IP like 10.1.0.x and after registering on the Hotspot the User
gets full access to my network.
But the wireless users shouldn´t be allowed to have acess to the LAN clients in 192.168.1.x but they need to have access to the router 192.168.1.1
instead they won´t have internet access.
Now it´s the question how to setup iptables that the WLAN clients only have access to 192.168.1.1
Another possibilitie is to allow only traffic on port 80.
Maybe anybody has some advise for me?
Thanks
draught