Reply to post: Re: NAT isn't your first line of defense, the stateful firewall is.

IPv6 is built to be better, but that's not the route to success

Nanashi

Re: NAT isn't your first line of defense, the stateful firewall is.

No, it doesn't. All it does to incoming packets is rewrite their dest address header, and only if they match a connection that's being NATed (or a static port forwarding rule); it doesn't decide whether or not to drop incoming packets.

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon