NAT and Public IP addresses

From: Barry (blilly1@tampabay.rr.com)
Date: 01/30/03


From: blilly1@tampabay.rr.com (Barry)
Date: 30 Jan 2003 10:19:30 -0800

I am a bit new to NAT so here goes... Is there any Security risk
involved with using public IP addresses vs. private when setting up
NAT. I have a customer running NAT and has public IP's assigned. Not
his own, just some he pulled out of thin air. Just seems a bit flawed
to me. Everything I read says use non-routable IP's but doesn't
really discuss why.



Relevant Pages

  • Re: NAT without DHCP? (w2k3)
    ... How I can troubleshoot the problem and see why ip packets from the private ... DNS works perfectly fine but nothing else. ... How does your server connect to the Internet? ... I also enabled NAT tracing - may be this can help? ...
    (microsoft.public.windows.server.networking)
  • Re: NAT without DHCP? (w2k3)
    ... is that dialog to configure address pool for the private network? ... (Just to add to the confusion there is another pool of addresses in RRAS ... If you want to use it, you configure a pool of IP addresses for NAT ... is enabled on the public interface of the RRAS server already. ...
    (microsoft.public.windows.server.networking)
  • Re: NAT and RDP ?
    ... NAT device from a Client on the private side of the LAN. ... If the Resource is bound only to the Public IP# of the Server (like IIS can do ...
    (microsoft.public.windows.server.networking)
  • Re: RRAS Win2003: Cannot reach public IP reserved hosts behind our NAT
    ... From within our intranet we can access the machines by> their private addresses just fine, as these packets are not> routed to our RRAS box. ... The role of the IP# in Ethernet is only to provide a Layer3 routing> mechanism and to provide a means to resolve the MAC address. ... The> reason intranet host must use the private addresses to access the servers is> because NAT can't make "u-turns". ... When you send a packet to the external> IP# the "NAT" process takes it and creates a situation where the source and> destination MAC addresses in the packet headers are the same address. ...
    (microsoft.public.windows.server.networking)
  • Re: NAT without DHCP? (w2k3)
    ... the private address of the NAT machine? ... I also enabled NAT tracing - may be this can help? ... right-click on my public interface, I see "Address pool" tab but it ... server, just leave the area for IP addresses blank", what do you ...
    (microsoft.public.windows.server.networking)