Re: Security gain from NAT (was: Re: Cool IPv6 Stuff)

From: Nicholas Suan (no email)
Date: Tue Jun 05 2007 - 09:39:58 EDT

  • Next message: Steve Feldman: "NANOG40 Lightning Talks for Tuesday, June 5"

    On 6/5/07, David Schwartz <> wrote:
    >
    >
    > Combined responses to save bandwidth and hassle (and number of times you
    > have to press 'd'):
    >
    > --
    >
    > > Just because it's behind NAT, does not mean it's unreahcable from the
    > internet:
    >
    > Okay, so exactly how many times do you think we have to say in this thread
    > that by "NAT/PAT", we mean NAT/PAT as typically implemented in the very
    > cheapest routers in their default configuration?
    >

    Even the cheapest routers have a 'DMZ' configuration option that adds
    a rule that, by default, sends all the traffic to a particular host.
    And using that is a fairly common solution to bypassing problems with
    port forwarding and NAT.


  • Next message: Steve Feldman: "NANOG40 Lightning Talks for Tuesday, June 5"





    Hosted Email Solutions

    Invaluement Anti-Spam DNSBLs



    Powered By FreeBSD   Powered By FreeBSD