Home page logo

nanog logo nanog mailing list archives

Re[2]: Where NAT disenfranchises the end-user ...
From: Richard Welty <rwelty () averillpark net>
Date: Mon, 10 Sep 2001 13:47:43 -0400 (Eastern Daylight Time)

On 10 Sep 2001 13:29:58 -0400 Scott Gifford <sgifford () tir com> wrote:

I've actually seen the question of how NAT breaks the Internet more
than a good stateful firewall come up more than once, and haven't
really seen a satisfactory answer.  Where does a stateful firewall
configured to only allow outgoing connections work that NAT doesn't?

in the case of IPSec, the IP addresses need to be preserved end-to-end
as part of the whole security scheme.

Richard Welty                                    Averill Park Networking
rwelty () averillpark net                                      518-573-7592

  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]