Where NAT disenfranchises the end-user ...
Richard Welty
rwelty at averillpark.net
Mon Sep 10 17:47:43 UTC 2001
On 10 Sep 2001 13:29:58 -0400 Scott Gifford <sgifford at tir.com> wrote:
> I've actually seen the question of how NAT breaks the Internet more
> than a good stateful firewall come up more than once, and haven't
> really seen a satisfactory answer. Where does a stateful firewall
> configured to only allow outgoing connections work that NAT doesn't?
in the case of IPSec, the IP addresses need to be preserved end-to-end
as part of the whole security scheme.
richard
--
Richard Welty Averill Park Networking
rwelty at averillpark.net 518-573-7592
More information about the NANOG
mailing list