I have an SXT with a usb 3G Card. All is working as advertised.
The wifi (wlan1) interface connects to a local user group ( address 172.16.0.0/12 )
The usb (ppp-out1) connects to the internet via 3G ( default gateway )
The ethernet (eth0) connects to my local lan ( 192.168.1.0/24 )
Currently i have the default srcnat-masquerade rule with no additional limitcations in interface or ip ranges.
Is my ppp-out safe from abuse by users on the wlan ? The way i see it : if a user in same network as my wifi address sets my wifi as his gateway for his default route, my sxt will route and NAT his traffic out onto the internet. I dont want that. I want the 3G to be only natted to my eth0 port. At the same time though i also want my wifi to NAT my local lan.
Suggestions please…
BBJ