On Tuesday 05 August 2008 17:42:14 ext Iljitsch van Beijnum, you wrote:
> On 5 aug 2008, at 16:09, Rémi Denis-Courmont wrote:
> >> What's the difficulty with TCP? If I understand things correctly,
> >> once
> >> you use a certain port as a source port number on the public side, a
> >> behave-compliant NAT will forward incoming sessions towards that port
> >> number to you. So the only thing the application has to do is figure
> >> out what the address/port is that others see and not release the port
> >> number and it's in business.
> >
> > The passive side of the TCP connections can hardly be behind a NAT.
>
> Isn't that the whole point of endpoint independent NATing?

If you prefer it that way:
most NATs and just about all firewalls are not at all BEHAVE-TCP-compliant 
today.

-- 
Rémi Denis-Courmont
Maemo Software, Nokia Devices R&D
_______________________________________________
Int-area mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/int-area

Reply via email to