[156030] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: The End-To-End Internet (was Re: Blocking MX query)

daemon@ATHENA.MIT.EDU (William Herrin)
Tue Sep 4 15:46:37 2012

In-Reply-To: <11671130.23144.1346782974846.JavaMail.root@benjamin.baylink.com>
From: William Herrin <bill@herrin.us>
Date: Tue, 4 Sep 2012 15:45:32 -0400
To: Jay Ashworth <jra@baylink.com>
Cc: NANOG <nanog@nanog.org>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org

On Tue, Sep 4, 2012 at 2:22 PM, Jay Ashworth <jra@baylink.com> wrote:
> It is regularly alleged, on this mailing list, that NAT is bad *because it
> violates the end-to-end principle of the Internet*, where each host is a
> full-fledged host, able to connect to any other host to perform transactions.

That's what firewalls *are for* Jay. They intentionally break
end-to-end for communications classified by the network owner as
undesirable. Whether a particular firewall employs NAT or not is
largely beside the point here. Either way, the firewall is *supposed*
to break some of the end to end communication paths.

Regards,
Bill Herrin


-- 
William D. Herrin ................ herrin@dirtside.com  bill@herrin.us
3005 Crane Dr. ...................... Web: <http://bill.herrin.us/>
Falls Church, VA 22042-3004


home help back first fref pref prev next nref lref last post