Great Circle Associates Firewalls
(February 1997)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: RE: Duplicated network addresses
From: Daniel Garcia <kender @ hollyfeld . org>
Date: Tue, 4 Feb 1997 13:07:55 -0500 (EST)
To: Lilia Miltcheva <Miltcheva @ unicc . org>
Cc: "'jeff . needle @ altavista-software . com'" <jeff . needle @ altavista-software . com>, "'altavista-product @ digital . com'" <altavista-product @ digital . com>, "'admin @ unicc . org'" <admin @ unicc . org>, "'firewalls @ greatcircle . com'" <firewalls @ GreatCircle . COM>
In-reply-to: <c=CH%a=400net%p=unicc%l=NEW-EXCHANGE-970204153200Z-3805 @ new-exchange . unicc . org>

On Tue, 4 Feb 1997, Lilia Miltcheva wrote:
> Jeff,
> What you say is correct and I do not have any problem with that. My
> question is rather what will happen if I address host.unicc.org that has
> the same IP as www.microsoft.com, for example? 
> As the tunnel comes up, the tunnel server tells the client which
> networks a to be tunneled, so logically in this case for
> www.microsoft.com = host.unicc.org I will go through the tunnel and
> therefore I will never be able to reach www.microsoft.com while the
> tunnel is up....

There is a set of IP numbers that is reseved precisely for this situation -
they are reserved for private networks, i.e. networks that will never be
directly addressable by the internet, and are garunteed by IANA (among
others I believe) to never be allocated on the internet. According to
rfc1918 (available at http://ftp.isi.edu/in-notes/rfc1918.txt ) the
following address spaces are available:

   The Internet Assigned Numbers Authority (IANA) has reserved the
      following three blocks of the IP address space for private internets:
      
           10.0.0.0        -   10.255.255.255  (10/8 prefix)
	        172.16.0.0      -   172.31.255.255  (172.16/12 prefix)
		     192.168.0.0     -   192.168.255.255 (192.168/16 prefix)

Cheers,

--Dg



References:
Indexed By Date Previous: Red Book vs Orange Book
From: Leonard Miyata <leonard @ geminisecure . com>
Next: CyberGuard & NAT
From: "Darwin L. Martinez" <darwin_martinez @ INS . COM>
Indexed By Thread Previous: RE: Duplicated network addresses
From: Jeff Needle <needle @ altavista . digital . com>
Next: RE: Duplicated network addresses
From: Lilia Miltcheva <Miltcheva @ unicc . org>

Google
 
Search Internet Search www.greatcircle.com