Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Hiding Behind Your NAT » Rolling my own
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Post a:
Post a:
another angle »
« bunch of crap  

pvale
Lurk, Lurk, Lurk,They Call Me The Lurker

join:2000-03-29
Washington, MO
clubs:
·Charter Pipeline

Re: Rolling my own

What if you are running 2 NAT devices in series? I'm running a Freesco PC-made-into-router, feeding a Netgear RT314, and my machines are connected behind the Netgear box. I haven't read the mentioned paper, but the only ID that would show on the WAN side of the Freesco would be the Netgear's. Since Freesco is built on a small Linux distribution, I'm sure I can change what it does/reports.
--
Using ET photons (Solar Power) to search for ET.

amenite
The Soylent - It's People
Premium
join:2002-11-21
Ridgewood, NJ
clubs:
·Verizon Online DSL

Re: Rolling my own

said by pvale See Profile:
What if you are running 2 NAT devices in series? I'm running a Freesco PC-made-into-router, feeding a Netgear RT314, and my machines are connected behind the Netgear box. I haven't read the mentioned paper, but the only ID that would show on the WAN side of the Freesco would be the Netgear's. Since Freesco is built on a small Linux distribution, I'm sure I can change what it does/reports.

The ID in question is the IP id string assigned to each packet by the OS, not the IP address of the NAT device. It only has to do with the IP address in that you would be monitoring/analyzing the all packet headers originating from a particular IP address.
--
Time is an abstract concept invented by carbon based life forms to monitor their constant decay.-Thunderclese

AthlGrond
Premium,MVM
join:2002-04-25
Aurora, CO
·Comcast

Re: Rolling my own

said by amenite See Profile:
The ID in question is the IP id string assigned to each packet by the OS, not the IP address of the NAT device.
Are the IPid's not assigned by the NAT device? Seems like they would have to be. (so the NAT device could send the packets to the correct IP in the LAN)

amenite
The Soylent - It's People
Premium
join:2002-11-21
Ridgewood, NJ
clubs:
·Verizon Online DSL

Re: Rolling my own

said by AthlGrond See Profile:
said by amenite See Profile:
The ID in question is the IP id string assigned to each packet by the OS, not the IP address of the NAT device.
Are the IPid's not assigned by the NAT device? Seems like they would have to be. (so the NAT device could send the packets to the correct IP in the LAN)
According to the article, the "IP id" field is generated by the host, and is only used to reassemble fragmented packets. It must be unique among all packets of one protocol that have the same source and destination address (to allow for correct reassembly in case of fragmentation). I am assuming that the NAT device only alters the source IP, or leaves enough of the IP id string intact to allow the technique to work.
--
Time is an abstract concept invented by carbon based life forms to monitor their constant decay.-Thunderclese

AthlGrond
Premium,MVM
join:2002-04-25
Aurora, CO

Re: Rolling my own

Thanks, I reread it and much clearer now. You are correct.
Forums » Hiding Behind Your NATanother angle »
« bunch of crap  


Friday, 04-Dec 17:29:16 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.republican-creole
page compression OFF
Most commented news this week
· [163] Comcast Releasing Promised Usage Meter
· [145] Avast Antivirus Has Gone Mad
· [124] Comcast Makes NBC Universal Acquisition Official
· [104] Graduate Student Unveils Sprint's GPS Sharing With Feds
· [101] Google Invades ISP, OpenDNS Turf With Google Public DNS
· [81] Latest Consumer Reports Survey Not Kind To AT&T
· [81] FCC Ponders Moving From PSTN To IP Voice
· [74] Sprint Defuses GPS Privacy Media Bomb
· [70] Baltimore To Ban Lazy Cable Installs
· [64] Broadband Killed The Game Console
Most people now reading
· False positive in Avast! or is it real? [Security]
· Long ethernet runs [Wireless Service Providers]
· I finally jumped off the Windows ship! [All Things Macintosh]
· DNS options, what are YOU using? [TekSavvy]
· 3.x Feral Druid - Bear Tanking Guide [World of Warcraft]
· Equal speeds ruling [Canadian Broadband]
· Maximizing Rogue DPS for ToC/ToGC (3.x) [World of Warcraft]
· Google takes aim at browser redirection [Security]
· [DNS] Google's public DNS... performance increases? [Comcast HSI]
· Can we go from 10 uld to 10 ony then to 10 TotC? [World of Warcraft]