Cisco NAT Basics

Network Address Translation was initially a way to conserve IP addresses. It takes a RFC 1918 private IP address and converts it to the IP address that is assigned by NIC or the ISP. Now it is a fairly standard way of protecting a network from unsolicited incoming connections from the big bad Internet. Since you have to explicitly allow connections in it is an easy way of having a default deny rule it catches bad filtering rules by inexperienced firewall rule writers.

Comments

Post new comment

The content of this field is kept private and will not be shown publicly.