Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 1 Jun 1999 18:35:58 +0200 (MET DST)
From:      Luigi Rizzo <luigi@labinfo.iet.unipi.it>
To:        svetzal@cujo2.icom.ca (Steven Vetzal)
Cc:        jim@web-ex.com, net@FreeBSD.ORG
Subject:   Re: natd question
Message-ID:  <199906011635.SAA01905@labinfo.iet.unipi.it>
In-Reply-To: <000501beabc5$b6f0e460$7ffea8c0@blazer.pr1.on.wave.home.com> from "Steven Vetzal" at May 31, 99 08:28:28 pm

next in thread | previous in thread | raw e-mail | index | archive | help
> I tend to disagree with Jim's comment on "unroutable IPs" being no risk.
> They're no risk if you're positive the _other_ side of your link is clean,
...
and the firewall machine itself, requires much tighter rules when
forwarding is enable than when it is not.

> I agree with Luigi's (forgive me) paranoid approach...

i am usually not, but on one side we have an engineering students'
lab with over 100 machines, shouldn't i be worried :)

	cheers
	luigi
-----------------------------------+-------------------------------------
  Luigi RIZZO, luigi@iet.unipi.it  . Dip. di Ing. dell'Informazione
  http://www.iet.unipi.it/~luigi/  . Universita` di Pisa
  TEL/FAX: +39-050-568.533/522     . via Diotisalvi 2, 56126 PISA (Italy)

		  http://www.iet.unipi.it/~luigi/ngc99/
====  First International Workshop on Networked Group Communication  ====
-----------------------------------+-------------------------------------


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-net" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?199906011635.SAA01905>