Hi,

On Sat, Oct 30, 2010 at 02:16:16PM -0700, Roger Marquis wrote:
> Ok, cansider my statements as applicable to enterprise security
> professionals then, the ones with responsibility for edge firewalls, the
> overwhelming majority of whom know that NAT is an important security tool
> and have no carrier-driven or marketing-driven hidden agendas.

I have built enterprise networks in the past, and we've used NAT in some
places, and avoided NAT like the plague in other places.

NAT is a useful tool at times, and a major pain at other times.  
*Professionals* can analyze a situation and pick *the right tool*, instead
of blindly following the "everybody does this!!" lore.

If you want to state that *you* like NAT, fine.  But don't assume you can
speak for others, or for "security professionals".

Gert Doering
        -- NetMaster
-- 
did you enable IPv6 on something today...?

SpaceNet AG                        Vorstand: Sebastian v. Bomhard
Joseph-Dollinger-Bogen 14          Aufsichtsratsvors.: A. Grundner-Culemann
D-80807 Muenchen                   HRB: 136055 (AG Muenchen)
Tel: +49 (89) 32356-444            USt-IdNr.: DE813185279

Attachment: pgpVpQ4AzMxZz.pgp
Description: PGP signature

_______________________________________________
nat66 mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/nat66

Reply via email to