Hi, On Sat, Oct 30, 2010 at 02:16:16PM -0700, Roger Marquis wrote: > Ok, cansider my statements as applicable to enterprise security > professionals then, the ones with responsibility for edge firewalls, the > overwhelming majority of whom know that NAT is an important security tool > and have no carrier-driven or marketing-driven hidden agendas.
I have built enterprise networks in the past, and we've used NAT in some
places, and avoided NAT like the plague in other places.
NAT is a useful tool at times, and a major pain at other times.
*Professionals* can analyze a situation and pick *the right tool*, instead
of blindly following the "everybody does this!!" lore.
If you want to state that *you* like NAT, fine. But don't assume you can
speak for others, or for "security professionals".
Gert Doering
-- NetMaster
--
did you enable IPv6 on something today...?
SpaceNet AG Vorstand: Sebastian v. Bomhard
Joseph-Dollinger-Bogen 14 Aufsichtsratsvors.: A. Grundner-Culemann
D-80807 Muenchen HRB: 136055 (AG Muenchen)
Tel: +49 (89) 32356-444 USt-IdNr.: DE813185279
pgpVpQ4AzMxZz.pgp
Description: PGP signature
_______________________________________________ nat66 mailing list [email protected] https://www.ietf.org/mailman/listinfo/nat66
