Firewall Wizards mailing list archives

Re: Transparent NAT


From: Predrag Zivic <pzivic () yahoo com>
Date: Thu, 21 Sep 2000 12:27:05 -0700 (PDT)

I agree, double NAT is not a good idea. UDP and TCP
protocols like FTP will not work (I tried it and got
burned with it...). So as suggested no need for NAT on
your router. Just a VPN NAT should do it. 

Pez

--- "Michael C. Ibarra" <ibarra () hawk com> wrote:
Quoting cdschuler () home com:

Today I met with a VPN appliance manufacturer.  I
was told that
there is a significant problem with NAT when there
is a router
between the VPN appliance and the end user.  From
what I'm told
the problem lies with the fact that both the VPN
and the router are
conducting NAT between each other and therefore
there needs to
be transparent NAT to alleviate this.  They don't
have the software
patch yet.  Is there a patch for this on the
software side rather than
purchasing their additional hardware to fix it?

Thank you, Cameron Schuler

Every router I know of that does NAT'ing, has the
ability to
turn off this feature. Decide, NAT on the router or
NAT on 
your VPN appliance, turn one off, preferably, in
your case,
turn it off on the router.

-mike
      
        The information contained in this message 
         is not necessarily the opinion of Hawk 
                 Technologies, Inc.


_______________________________________________
Firewall-wizards mailing list
Firewall-wizards () nfr net
http://www.nfr.net/mailman/listinfo/firewall-wizards


__________________________________________________
Do You Yahoo!?
Send instant messages & get email alerts with Yahoo! Messenger.
http://im.yahoo.com/

_______________________________________________
Firewall-wizards mailing list
Firewall-wizards () nfr net
http://www.nfr.net/mailman/listinfo/firewall-wizards


Current thread: