nanog mailing list archives

Re: RFC1918 addresses to permit in for VPN?


From: Andrew Brown <twofsonet () graffiti com>
Date: Fri, 29 Dec 2000 13:48:02 -0500


This is one of the benchmarks of cluelessness. The other is that the
addresses don't have reverse DNS.  As has been said here, many times,
using RFC1918 addresses on interfaces, breaks Path MTU discovery, due to
martians filters on network boundaries.

they might actually have reverse dns set up for those addresses, but
i, of course, have no idea what server to ask about it.  :)

-- 
|-----< "CODE WARRIOR" >-----|
codewarrior () daemon org             * "ah!  i see you have the internet
twofsonet () graffiti com (Andrew Brown)                that goes *ping*!"
andrew () crossbar com       * "information is power -- share the wealth."



Current thread: