[Mimedefang] Adding support for learning our addresses

Sean Ware sware at midwaygames.com
Tue Jan 31 17:47:07 EST 2006


David F. Skoll (dfs at roaringpenguin.com) @ 2006.01.31 16:30:48 -0500:
> [Discussion on "learning" your external IP]
> 
> No matter what method you use, Evil NAT Boxes can defeat it.  For example,
> I know of some NAT boxes that pick a public address in a round-robin fashion
> for each outgoing TCP connection.  There's no sensible way to find out
> your "real" IP address from an external source under those circumstances.

Oh man! -- I assume such devices at least keep the translations open
for the length of a TCP session? (Not that UDP DNS queries would
necessarily follow the same guidelines, of course. -- It's just my own
morbid curiosity.)

....Sean

-- 
Sean Ware                          Midway Amusement Games, LLC
Senior Network Engineer                  2727 W. Roscoe Street
Information Technology Department       Chicago, IL 60618-5909
sware at midwaygames.com                           (773) 961-2000




More information about the MIMEDefang mailing list