[33155] in North American Network Operators' Group
Re: RFC1918 addresses to permit in for VPN?
daemon@ATHENA.MIT.EDU (John Hawkinson)
Sun Dec 31 21:15:13 2000
Date: Sun, 31 Dec 2000 21:13:13 -0500
From: John Hawkinson <jhawk@bbnplanet.com>
To: Randy Bush <randy@psg.com>
Cc: nanog@merit.edu
Message-ID: <20001231211313.D14848@jhawk-foo.bbnplanet.com>
Mime-Version: 1.0
Content-Type: text/plain; charset=us-ascii
In-Reply-To: <E14CsQI-0001XM-00@rip.psg.com>; from randy@psg.com on Sun, Dec 31, 2000 at 04:01:58PM -0800
Errors-To: owner-nanog-outgoing@merit.edu
> so any isp which lets the outside world see a packet with a source in 1918
> space is in direct violation of 1918.
...
Nevertheless, the operational reality is that having a traceroute that
shows RFC1918 addresses is more useful than a traceroute that shows
* * *, and therefore I suspect most operators will continue to permit
RFC1918 addresses into their networks as long as a few questionable
individuals use them to source traffic.
(If they even bother to think about it.)
--jhawk