Dual Network Crosstalk Problem

PCUser

Distinguished
Jan 11, 2004
15
0
18,510
Hi all.

I have a dual network setup at home.

Network 1 - My Work PC + 2 'Home Entertainment' PC's for my kids to play on. These are hooked up to a 4-port Network Hub then to my DSL router.

Network 2 - My Gaming PC Rig + 3 Gaming PC Rigs. These are also hooked up to another 4-Port Network Hub then to my DSL router.



*** The Problem ***
Due to some... uhhh... errrr... ummmm... problems with someone who 'I' [Yes! Me!] invite over... I need to change the WAY the networks are setup and I'm unsure of exactely how to do it.

-The 'new' network setup-
Network 1 - My Work PC [Only one ALLOWED to access the DSL connection from Network 1], accessing the 2 'Entertainment PCs' network as well. Note: I do NOT wish my Work PC or the 2 Ent'PCs to have ANY access to the Network 2 PCs at all. The 2 Ent'PCs are NOT to have any DSL/Internet access.

Network 2 - My Gaming Rig [Only one to have access to the DSL connection on Network 2] accessing the other 3 Gaming PC Rigs. Note: I do not wish My Gaming PC Rig or the 3 Gaming PCs to have access to Network 1, nor the 3 Gaming PC Rigs to have access to the DSL/Internet connection.



(-- Potential Solutions??? --)
[1] Setup Network 1's Work PC with dual [2] NIC's with one NIC corresponding subnet mask specific to the DSL [ie. 255.255.255.1] router, and the other NIC's subnet mask specific to the 2 Ent'PCs subnet throught the 4-port hub [ie. 255.255.255.2].

Setup Network 2 similarly to Network 1. In this case My Gaming Rig will have 2 NICs with one of them having the subnet of the DSL router [ie. 255.255.255.1] and the other NIC having the subnet of the 3 other Gaming PC Rigs running on their 4-port hub [ie. 255.255.255.3].

I ^think^ this will work to keep the 2 Ent'PCs from accessing the Internet, my Gaming Rig or the 3 Gaming PC Rigs on Network 2. Conversely this should keep the 3 Gaming PC Rigs on Network 2 from accessing the internet, My Work PC or the 2 Ent'PCs.

[2] Setup a Proxy Server before the hubs head to the DSL router. That'll stop external accesses to the Internet through the DSL router. It'll not block inter-Network 1 & 2 communications though.

[3] Setup 2 Switches before the Proxy server [which is before the DSL router]. That'll solve the DSL issue and should also solve the cross network comms between Networks 1 & 2. But this solution [unless I'm just missing something here] will be quite costly overall and require a good bit of time to setup compared to Solution [1].

[4] [The final option] Leave the networks as is and just setup the DSL router to only 'see' the IP addresses of 'My Work PC' and 'My Gaming Rig'. This only fixes the issue of DSL/Internet access [AFAIK] and would still allow accesses between Network 1 & 2. If it ~would~ block the crossnetwork accesses as is... would it be open to hackerdom from Network 1 OR Network 2 [ie. some scripting or a proggie to 'openup' the DSL router to allow covert Inet and cross-Network 1/2 accesses]?

Rebuttles fellas?

I think this is prolly better than setting up a Proxy server AFAIK. Also, there aren't any 'decently priced' switches that can do 'private IP' addressing and block cross communications between these networks are there? If so... what setup would any of you advise.

Have I hit the nail on the head with this setup in 'Solution [1]'? Or will there be file-sharing difficulties between My Work PC and the 2 Ent'PCs when I browse the Internet too?

Will the Dual NIC setup in the Work PC and also My Gaming Rig forward packets from Network 1 to Network 2 and consequently to the DSL router for Internet access? If so, is there a 'packet forwarding' feature on NICs themselves that I need to be aware of? [Note: I'm not referring to what used to be called 'Server NICs' for the NICs I intended to install, AFAIK the Proxy Server System does Software-based forwarding of those requests out to the DSL/Internet based on its IP filtering que]

Can the Proxy Server setup actually block crosstalk between Networks 1 & 2 also instead of just blocking Internet calls out from the 2 Ent'PCs and the 3 Gaming PC Rigs [after their IPs are setup in the Proxy Server correctly]?


Well, any help would be greatly appreciated.

Sincerely,

Mr. PCUser

=)

<P ID="edit"><FONT SIZE=-1><EM>Edited by PCUser on 01/13/04 01:04 PM.</EM></FONT></P>
 

PCUser

Distinguished
Jan 11, 2004
15
0
18,510
Noone knows a good solution to this?

Did I actually make the best solution in my [1]st solution? Will that work correctly?