[prev in list] [next in list] [prev in thread] [next in thread] 

List:       ipfilter
Subject:    Re: Security checks in the incoming packets to NAT ports?
From:       Darren Reed <darrenr () reed ! wattle ! id ! au>
Date:       2002-03-27 8:51:36
[Download RAW message or body]

In some email I received from Pekka Savola, sie wrote:
> > And can also do this one:
> > 
> > > 4) Finally, some NAT map the same internal address and port pair to
> > > different external address and port pairs, depending on the address
> > > of the remote host. These NATs are usually called "symmetric NATs".
> 
> Thanks for the information.  Could you point out whether this is 
> configurable or what's the criteria when one or the other is used?

eg

map foo0 from 192.168.0.0/16 to 203.1.1.0/24 -> 10.1.1.1/32
map foo0 from 192.168.0.0/16 to 209.87.195.0/24 -> 203.45.63.0/26

Darren
[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic