The UK Home Automation Archive

Archive Home
Group Home
Search Archive


Advanced Search

The UKHA-ARCHIVE IS CEASING OPERATIONS 31 DEC 2024


[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: Routers and firewalls


  • To: <ukha_d@xxxxxxx>
  • Subject: RE: Routers and firewalls
  • From: "Dean Smith" <ukha@xxxxxxx>
  • Date: Tue, 15 Jul 2003 11:53:34 +0100
  • Mailing-list: list ukha_d@xxxxxxx; contact ukha_d-owner@xxxxxxx
  • Reply-to: ukha_d@xxxxxxx

The presence of NAT to hide the private subnet is indeed a large part of
the
security offered. Inbound connections then have to be specifically enabled
to a specific host.

However many of the All-in-one boxes allow you to setup a default host
insdide to receive all inbound connections. If this is used - all security
of the NAT routing fucntion is lost. You're then back to requiring a
firewall either on the router (or on the Target PC).

Dean

-----Original Message-----
From: Matthew Norman [mailto:mafiu@xxxxxxx]
Sent: 15 July 2003 11:05
To: ukha_d@xxxxxxx
Subject: [ukha_d] Routers and firewalls


Just continuing this theme of adsl and what is a router....

If you have an asdl router, and a private subnet ie 192.168.x.x, doesnt the
fact that you cant get to the private subnet from the internet act as a
rudimentary firewall?  Surely a pc on the private subnet (in the absence of
port redirection) is safer than a pc with an asdl modem attached directly?
Do I understand that right?

Matthew




** UKHA2004 BE THERE! ** - start planning now.

http://www.automatedhome.co.uk
Post message: ukha_d@xxxxxxx
Subscribe:  ukha_d-subscribe@xxxxxxx
Unsubscribe:  ukha_d-unsubscribe@xxxxxxx
List owner:  ukha_d-owner@xxxxxxx

Your use of Yahoo! Groups is subject to http://docs.yahoo.com/info/terms/




Home | Main Index | Thread Index

Comments to the Webmaster are always welcomed, please use this contact form . Note that as this site is a mailing list archive, the Webmaster has no control over the contents of the messages. Comments about message content should be directed to the relevant mailing list.