On 2016-05-24 10:23, Ambróz Zoltán wrote:
Szia,

Vagy rosszul latom?
Udv, AZ
a "rosszul latom?" nem a lentiekre vonatkozott, hanem arra, hogy
(nekem) nem eri meg a nem fix publikus ip, mert kevesebb az elonye,
mint a hatranya.


A nagy tomegek szamara nyilvanvalo, kulonben nem leteznenek olyan technologiak, mint a CGNAT.


2) isten azert teremtette meg a tuzfalakat, hogy hasznald
Mindet! Az implicit tuzfalkent mukodo NAT-ot is, ha mas nem teszi szuksegesse,
hogy kibujjak mogule. Szuksegesse teszi? Erre vonatkozott a kerdes.


A valasz erre pedig az, hogy semmi koze a kettonek egymashoz. A nat egy technologia cimforditasra, a tuzfalazas egy technologia biztonsag novelesere. A kettonek annyi koze van egymashoz, mint kiflinek a zsemlehez (mindketto lisztbol van - mind a nat es a tuzfalazas halozatokban hasznalatos).

Nem szegyen tanulni az okosabbaktol, igy hadd idezzek egy okos embert:

NAT and firewalling are completely orthogonal concepts that have nothing to do with each other. Because some NAT implementations accidentally provide some firewalling, there is a persistent myth that NAT provides security. It provides no security whatsoever. None. Zero. [...] Many actual SoHo NAT boxes forward traffic to inside hosts despite no inside host having ever sent traffic to the source of the forwarded traffic. [...] The key sentence is: addressable ≠ accessible.

udv
adam

_______________________________________________
Techinfo mailing list
[email protected]
Fel- és leiratkozás: http://lista.sulinet.hu/mailman/listinfo/techinfo
Illemtan: http://www.szag.hu/illemtan.html
Ügyfélszolgálat FAQ: http://sulinet.niif.hu/

válasz