On 2016-05-24 10:23, Ambróz Zoltán wrote:
Szia,
Vagy rosszul latom?
Udv, AZ
a "rosszul latom?" nem a lentiekre vonatkozott, hanem arra, hogy
(nekem) nem eri meg a nem fix publikus ip, mert kevesebb az elonye,
mint a hatranya.
A nagy tomegek szamara nyilvanvalo, kulonben nem leteznenek olyan
technologiak, mint a CGNAT.
2) isten azert teremtette meg a tuzfalakat, hogy hasznald
Mindet! Az implicit tuzfalkent mukodo NAT-ot is, ha mas nem teszi
szuksegesse,
hogy kibujjak mogule. Szuksegesse teszi? Erre vonatkozott a kerdes.
A valasz erre pedig az, hogy semmi koze a kettonek egymashoz. A nat egy
technologia cimforditasra, a tuzfalazas egy technologia biztonsag
novelesere. A kettonek annyi koze van egymashoz, mint kiflinek a
zsemlehez (mindketto lisztbol van - mind a nat es a tuzfalazas
halozatokban hasznalatos).
Nem szegyen tanulni az okosabbaktol, igy hadd idezzek egy okos embert:
NAT and firewalling are completely orthogonal concepts that have nothing
to do with each other. Because some NAT implementations accidentally
provide some firewalling, there is a persistent myth that NAT provides
security. It provides no security whatsoever. None. Zero. [...] Many
actual SoHo NAT boxes forward traffic to inside hosts despite no inside
host having ever sent traffic to the source of the forwarded traffic.
[...] The key sentence is: addressable ≠ accessible.
udv
adam
_______________________________________________
Techinfo mailing list
[email protected]
Fel- és leiratkozás: http://lista.sulinet.hu/mailman/listinfo/techinfo
Illemtan: http://www.szag.hu/illemtan.html
Ügyfélszolgálat FAQ: http://sulinet.niif.hu/