[Date Prev][Date
Next][Thread Prev][Thread Next][Date
Index][Thread Index]
RE: web server on line
- To: <ukha_d@xxxxxxx>
- Subject: RE: web server on line
- From: "Des Gibbons" <des@xxxxxxx>
- Date: Fri, 2 Feb 2001 11:51:50 -0000
- Delivered-to: rich@xxxxxxx
- Delivered-to: mailing list ukha_d@xxxxxxx
- Mailing-list: list ukha_d@xxxxxxx; contact
ukha_d-owner@xxxxxxx
- Reply-to: ukha_d@xxxxxxx
>
> > Does your router not support NAT which helps a lot?
> >
>
> Yes it does but how does this help ?
It makes it very difficult to make a direct connection to your pc's
if your local addresses are 192.168.0.1-5
Your router ip is for example 4.5.6.7
then for me to ping one of your machines ( being a basic test) from
outside,
unless the router is set up to port forward to one of your pc's, I can't
get
a connection. If I telnet to 4.5.6.7 , again, unless you have configured
your router to port forward tcp port 21 to one of your internal addresses,
I
will not get a connection.
NAT is a good basic solution for security. But any ports that forward to
internal machines mean you still have to worry about protection beyong the
router. Of course NAT does nothing to prevent a trojan from getting out
thru
your router, so NAT alone isn't enough.
DesG
Home |
Main Index |
Thread Index
|