[75250] in North American Network Operators' Group
Re: Important IPv6 Policy Issue -- Your Input Requested
daemon@ATHENA.MIT.EDU (Jerry Eyers)
Tue Nov 9 15:17:50 2004
Date: Wed, 10 Nov 2004 03:14:51 -0500 (Eastern Standard Time)
From: "Jerry Eyers" <jeyers@sloancc.net>
To: <bsdusr@gmail.com>
Cc: "nanog@merit.edu" <nanog@merit.edu>
Errors-To: owner-nanog-outgoing@merit.edu
--------------Boundary-00=_RWEYCJD0000000000000
Content-Type: Text/Plain;
charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable
"Get a firewall" is not a valid response when you have lusers=0D
to drop the latest netgear whatever onto their PC and dial=0D
to some provider somewhere. Your firewall is useless to =0D
protect that segment. In many cases NAT is the ONLY=0D
protection you end up with in this scenario, a scenario that=0D
is far to common in the corporate world.=0D
=0D
Jerry =0D
=0D
-------Original Message-------=0D
=0D
From: Theo de Whaat=0D
Date: 11/09/04 15:28:44=0D
To: jeyers@sloancc.net=0D
Subject: Re: Important IPv6 Policy Issue -- Your Input Requested=0D
=0D
Get a firewall. You shouldn't rely on NAT to provide this=0D
functionality. How long has IPv6 been on the horizon, promising to=0D
make NAT unnecessary?=0D
=0D
>I want my inside addresses to be=0D
>non accessible from the 'real world', ever.
--------------Boundary-00=_RWEYCJD0000000000000
Content-Type: Text/HTML;
charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable
<HTML><HEAD>
<META http-equiv=3DContent-Type content=3D"text/html; charset=3Diso-8859-=
1">
<META content=3D"IncrediMail 1.0" name=3DGENERATOR></HEAD>
<BODY style=3D"BACKGROUND-POSITION: 0px 0px; FONT-SIZE: 12pt; MARGIN: 5px=
10px 10px; FONT-FAMILY: Arial" bgColor=3D#ffffff background=3D"" scroll=3D=
yes ORGYPOS=3D"0">
<TABLE id=3DINCREDIMAINTABLE cellSpacing=3D0 cellPadding=3D2 width=3D"100=
%" border=3D0>
<TBODY>
<TR>
<TD id=3DINCREDITEXTREGION style=3D"FONT-SIZE: 12pt; CURSOR: auto; FONT-F=
AMILY: Arial" width=3D"100%">
<DIV>"Get a firewall" is not a valid response when you have lusers</=
DIV>
<DIV>to drop the latest netgear whatever onto their PC and dial</DIV=
>
<DIV>to some provider somewhere. Your firewall is useless to </DIV>
<DIV>protect that segment. In many cases NAT is the ONLY</DIV>
<DIV>protection you end up with in this scenario, a scenario that</DIV>
<DIV>is far to common in the corporate world.</DIV>
<DIV> </DIV>
<DIV>Jerry </DIV>
<DIV> </DIV>
<DIV id=3DIncrediOriginalMessage><I>-------Original Message-------</I></D=
IV>
<DIV> </DIV>
<DIV id=3Dreceivestrings>
<DIV dir=3Dltr style=3D"FONT-SIZE: 11pt" <i><B>From:</B></I> <A href=3D"m=
ailto:bsdusr@gmail.com">Theo de Whaat</A></DIV>
<DIV dir=3Dltr style=3D"FONT-SIZE: 11pt" <i><B>Date:</B></I> 11/09/04 15:=
28:44</DIV>
<DIV dir=3Dltr style=3D"FONT-SIZE: 11pt" <i><B>To:</B></I> <A href=3D"mai=
lto:jeyers@sloancc.net">jeyers@sloancc.net</A></DIV>
<DIV dir=3Dltr style=3D"FONT-SIZE: 11pt" <i><B>Subject:</B></I> Re: Impor=
tant IPv6 Policy Issue -- Your Input Requested</DIV></DIV>
<DIV> </DIV>
<DIV>Get a firewall. You shouldn't rely on NAT to provide this=
</DIV>
<DIV>functionality. How long has IPv6 been on the horizon, pro=
mising to</DIV>
<DIV>make NAT unnecessary?</DIV>
<DIV> </DIV>
<DIV>>I want my inside addresses to be</DIV>
<DIV>>non accessible from the 'real world', ever.</DIV></TD></TR>
<TR>
<TD id=3DINCREDIFOOTER width=3D"100%">
<TABLE cellSpacing=3D0 cellPadding=3D0 width=3D"100%">
<TBODY>
<TR>
<TD width=3D"100%"></TD>
<TD id=3DINCREDISOUND vAlign=3Dbottom align=3Dmiddle></TD>
<TD id=3DINCREDIANIM vAlign=3Dbottom align=3Dmiddle></TD></TR></TBODY></T=
ABLE></TD></TR></TBODY></TABLE></BODY></HTML>
--------------Boundary-00=_RWEYCJD0000000000000--