Bill,

And my point is this:

NAT "Security" is not easily answered in a single paragraph, and you cannot support Scott as such. If one is to say that private addresses offer some sort of security above and beyond various forms of firewalls, one has to consider what the threat is. Is it a virus on a port that is being LISTENed to? If so, under what circumstances does NAT provide protection, above and beyond firewalls? It's not as easy as it sounds to answer these questions, IMHO.

I can say this: with all of this NAT around, there sure are a VAST amount of 0wn3d systems out there. How much more would there be without NAT?

Eliot
_______________________________________________
rrg mailing list
[email protected]
http://www.irtf.org/mailman/listinfo/rrg

Reply via email to