NOC servers with public/private ip address

Greg Maxwell gmaxwell at martin.fl.us
Wed Aug 15 15:38:45 UTC 2001


On Tue, 14 Aug 2001, Wojtek Zlobicki wrote:

> That isn't quite correct.  Internet routers should never "advertise" private
> IP blocks to the global Intenet, I've never heard of anyone stating that
> they should not have them in their routing table.  I've worked in a few NOCs
> in my short life and the NOC has always been on an isolated private subnet.
> Acess to critical hardware was only allowed from behind that subnet.
>
> Private addressing adds an extra layer of security as well as saving
> valuable IP space.

Security?! Come on. That's a lame reason.

It's that kind of mindset that leads to your customers being able to
manage your routers, simply because you had them secured by only being
manageable from a private space.





More information about the NANOG mailing list