login
Header Space

 
 

Re: Transparent Firewall with NAT

Score:
Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]
To: Openbsd Misc <misc@...>
Date: Wednesday, October 10, 2007 - 11:25 am

> From: Cedric THIBAULT

I am not sure you understand what NAT is.  When you use NAT to allow a 
system on one network to access another network, the traffic is NATted 
to the IP of the box doing the NAT.  In the case of a firewall like
device, the traffic would be given the IP address of the outer interface
of the firewall.

inside box (1)----> firewall/bridge doing nat (2)-----> Internet etc.

(1) network traffic leaves the inside box, it has the source IP of the
inside box.

(2) The network traffic is NATted by the firewall, when it leaves the
outer interface of the firewall it now has the source IP address of the
outer interface of the firewall.

Any return traffic would simply take the same steps in reverse.

If the firewall/bridge does not have any IP addresses, there is no way
that NAT can occur, It has no IP address to change the source IP to.

If I have this wrong somehow, please let me know.

s
Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]

Messages in current thread:
Re: Transparent Firewall with NAT, stuart van Zee, (Wed Oct 10, 11:25 am)
Re: Transparent Firewall with NAT, Cédric THIBAULT, (Wed Oct 10, 11:59 am)
Re: Transparent Firewall with NAT, ropers, (Fri Oct 12, 5:27 pm)
Re: Transparent Firewall with NAT, Marcus Andree, (Wed Oct 10, 1:00 pm)
speck-geostationary