Great Circle Associates Firewalls
(July 1997)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: What is NAT?
From: "Frank Knobbe" <FKnobbe @ BellSouth . net>
Date: Wed, 16 Jul 1997 08:55:57 -0600
To: "Neil D. Quiogue" <neil @ iphil . net>
Cc: firewalls @ greatcircle . com
Comments: Authenticated sender is <fknobbe @ mail . bna . bellsouth . net>
In-reply-to: <Pine . LNX . 3 . 95 . 970716152533 . 29417B-100000 @ marikit . iphil . net>
References: <33CB65C5 . 6C2B @ gst . cgs . it>
Reply-to: FKnobbe @ BellSouth . net

-----BEGIN PGP SIGNED MESSAGE-----

On 16 Jul 97 at 16:19, Neil D. Quiogue wrote about: Re: What is NAT?

> RFC1631.  A short description would be:
> NAT (Network Address Translation) lies on the concept of reusable
> addresses as a short-term solution to depleting ip address
> allocations.
> 
> In relation, some organizations have non-registered internal ip
> addresses. NAT translates the internal ip address to another ip
> address for communicating across the Internet.  It does this through
> a mechanism that maps a registered, global ip address to each local,
> private ip addresses.
> 
> I guess this answers why use NAT security-wise -- to hide your
> internal network behind a single ip address.


If the whole private nework is hidden behind one external IP address,
than you have a proxy. If 5 private IP addresses are hidden behind 5
(different) external IP addresses, than you have NAT.

NAT mangels IP addresses and keeps port numbers the same. Proxy 
mangles IP and port addresses.


Regards,
Frank



-----BEGIN PGP SIGNATURE-----
Version: 2.6.2

iQCVAwUBM8zSsMZP3ocmY5AlAQETVgQAgi3Om1ZvgPtoOJG/4un8SJ/T6wVB1MpY
0fk8GSRKp2L4NHV1KW4kD3dF9tu1R743xp13larTSZszsTRQ6QLRZkHIQYDK4SHH
RELm+q1gsZMg1KV9FQ4ilRWL1YM358rY/ugLZNxy8UeE1FB0ZNpFKXCMnGC3i6AN
OUTL+MqjDLY=
=/fR0
-----END PGP SIGNATURE-----
-----BEGIN SPAM WARNING-----

WARNING: ANYONE SENDING UNREQUESTED ADVERTISEMENT
VIA EMAIL WILL BE ADDED TO A FILTER LIST, WHICH WILL
AUTOMATICALLY DELETE EVERY MAIL FROM THE SENDER.
THIS WILL DISABLE FURTHER CORRESPONDENCE.
PLEASE REFRAIN FROM SENDING JUNK E-MAIL (SPAM).
THIS E-MAIL ADDRESS IS NOT TO BE ADDED TO A MASS
EMAIL LIST.

-----END SPAM WARNING-----



Follow-Ups:
References:
Indexed By Date Previous: Risks in NTOSKRNL? speculation....
From: "Michael S Hines" <mshines @ purdue . edu>
Next: Forwarding/routing GRE FW-1 Solaris 2.5.1x86
From: "Martin C. Walker" <martinw @ epcorp . com>
Indexed By Thread Previous: Re: What is NAT?
From: "Neil D. Quiogue" <neil @ iphil . net>
Next: Re: What is NAT?
From: "Neil D. Quiogue" <neil @ iphil . net>

Google
 
Search Internet Search www.greatcircle.com