nanog mailing list archives

Re: NOC servers with public/private ip address


From: Greg Maxwell <gmaxwell () martin fl us>
Date: Wed, 15 Aug 2001 11:38:45 -0400 (EDT)


On Tue, 14 Aug 2001, Wojtek Zlobicki wrote:

That isn't quite correct.  Internet routers should never "advertise" private
IP blocks to the global Intenet, I've never heard of anyone stating that
they should not have them in their routing table.  I've worked in a few NOCs
in my short life and the NOC has always been on an isolated private subnet.
Acess to critical hardware was only allowed from behind that subnet.

Private addressing adds an extra layer of security as well as saving
valuable IP space.

Security?! Come on. That's a lame reason.

It's that kind of mindset that leads to your customers being able to
manage your routers, simply because you had them secured by only being
manageable from a private space.



Current thread: