> trick you, or one of your users, into establishing a connection > to me, either by spyware, malware, or simply a virus or worm in an > email. ... Once you are connected to me, I can connect back over > the same stream, and now I am on your network. Assuming I have a > Windows NT or DOS machine on your network now, I most > likely have root-level access to start flooding/scanning/sniffing/leveraging > other hosts behind your NAT.
All true, but not relevant to the question of NAT itself. The techniques you mentioned work equally well against any kind of host, whether protected by a firewall or not. I'm specifically looking for clarification of Todd's statements about packet mangling and NAT insecurity. _______________________________________________ RLUG mailing list [EMAIL PROTECTED] http://www.rlug.org/mailman/listinfo/rlug
