[38024] in Resnet-Forum
Re: NAT Issues
daemon@ATHENA.MIT.EDU (Mike King)
Fri Mar 8 11:01:16 2013
MIME-Version: 1.0
Content-Type: multipart/alternative; boundary=f46d041825247486cc04d76bc8a2
Message-ID: <CANtPpk7xPGaTVuHZf2Qd=s9u9CkAu459n2o8YP4o32GCanZWZw@mail.gmail.com>
Date: Fri, 8 Mar 2013 10:50:31 -0500
Reply-To: Resnet Forum <RESNET-L@LISTSERV.ND.EDU>
From: Mike King <me@mpking.com>
To: RESNET-L@LISTSERV.ND.EDU
In-Reply-To: <47FE4CC0B92ADA478ECC286A11E97301339A3F@SUEX10-mbx-03.ad.syr.edu>
--f46d041825247486cc04d76bc8a2
Content-Type: text/plain; charset=windows-1252
Content-Transfer-Encoding: quoted-printable
Pete,
The general consensus is:
Do the NAT at the border, or as close to the border as possible.
Don't do PAT, Do NAT
Log your NAT's / PAT's
Each manufacturer has different implementations or names, but Basically do
the type of NAT where you have a pool of addresses, and each device is
mapped to an address, and keeps the address until a set timeout period..
Have an overflow pool of PAT for when you run out of addresses.
This has two effects.
1. Logging load is reduced, since only the NAT setup and teardown is
logged, not every single Transaction as you would in a PAT scenario.
2. Most applications can handle NAT this way. (Note, there are always
applications that can't handle NAT, even a static 1to1 NAT)
On Thu, Mar 7, 2013 at 7:06 AM, Peter P Morrissey <ppmorris@syr.edu> wrote:
> We are thinking about turning on NAT for our residences. Has anyone done
> this and noticed any problems that it created? The networks we are doing
> this for initially will be utilized mostly by consumer devices such as
> games, TV=92s, Roku=92s etc. Apparently PS3=92s can have difficulty with =
some
> online games unless you set up PAT for individual devices which we hope t=
o
> avoid if at all possible. ****
>
> ** **
>
> Thanks,****
>
> Pete Morrissey****
> ___________________________________________________ You are subscribed
> to the ResNet-L mailing list.
>
> To subscribe, unsubscribe or search the archives, go to
> http://LISTSERV.ND.EDU/archives/resnet-l.html____________________________=
_______________________
>
___________________________________________________
You are subscribed to the ResNet-L mailing list.
To subscribe, unsubscribe or search the archives,
go to http://LISTSERV.ND.EDU/archives/resnet-l.html
___________________________________________________
--f46d041825247486cc04d76bc8a2
Content-Type: text/html; charset=windows-1252
Content-Transfer-Encoding: quoted-printable
<div dir=3D"ltr">Pete,<div><br></div><div style>The general consensus is:</=
div><div style><br></div><div style>Do the NAT at the border, or as close t=
o the border as possible.</div><div style>Don't do PAT, Do NAT</div><di=
v style>
Log your NAT's / PAT's</div><div style>Each manufacturer has differ=
ent implementations or names, but Basically do the type of NAT where you ha=
ve a pool of addresses, and each device is mapped to an address, and keeps =
the address until a set timeout period.. Have an overflow pool of PAT for w=
hen you run out of addresses.</div>
<div style>This has two effects.</div><div style>1. Logging load is reduced=
, since only the NAT setup and teardown is logged, not every single Transac=
tion as you would in a PAT scenario.</div><div style>2. Most applications c=
an handle NAT this way. =A0(Note, there are always applications that can=
9;t handle NAT, even a static 1to1 NAT)</div>
</div><div class=3D"gmail_extra"><br><br><div class=3D"gmail_quote">On Thu,=
Mar 7, 2013 at 7:06 AM, Peter P Morrissey <span dir=3D"ltr"><<a href=3D=
"mailto:ppmorris@syr.edu" target=3D"_blank">ppmorris@syr.edu</a>></span>=
wrote:<br>
<blockquote class=3D"gmail_quote" style=3D"margin:0 0 0 .8ex;border-left:1p=
x #ccc solid;padding-left:1ex">
<div lang=3D"EN-US" link=3D"blue" vlink=3D"purple">
<div>
<p class=3D"MsoNormal">We are thinking about turning on NAT for our residen=
ces. Has anyone done this and noticed any problems that it created? The net=
works we are doing this for initially will be utilized mostly by consumer d=
evices such as games, TV=92s, Roku=92s
etc. Apparently PS3=92s can have difficulty with some online games unless =
you set up PAT for individual devices which we hope to avoid if at all poss=
ible.
<u></u><u></u></p>
<p class=3D"MsoNormal"><u></u>=A0<u></u></p>
<p class=3D"MsoNormal">Thanks,<u></u><u></u></p>
<p class=3D"MsoNormal">Pete Morrissey<u></u><u></u></p>
</div>
</div>
___________________________________________________
You are subscribed to the ResNet-L mailing list.
<p>
To subscribe, unsubscribe or search the archives,
go to <a href=3D"http://LISTSERV.ND.EDU/archives/resnet-l.html" target=3D"_=
blank">http://LISTSERV.ND.EDU/archives/resnet-l.html</a>
___________________________________________________
</p></blockquote></div><br></div>
___________________________________________________
You are subscribed to the ResNet-L mailing list.
<p>
To subscribe, unsubscribe or search the archives,
go to <a href=3D"http://LISTSERV.ND.EDU/archives/resnet-l.html" target=3D"_blank">http://LISTSERV.ND.EDU/archives/resnet-l.html</a>
___________________________________________________
--f46d041825247486cc04d76bc8a2--