Internal Address Space

Pekka Savola pekkas@netcore.fi
Sat, 4 May 2002 09:10:41 +0300 (EEST)


On Fri, 3 May 2002, David F. Newman wrote:
> Hi there,
> In the old IPv4 days sites would use private address space inside a firewall 
> for either address conservation or just plain old security through obscurity.
> 
> Now that a site can get a /48 to do with as they please is it necessary to use 
> private IP space anymore.  I am wondering if people out there use public 
> routable IPs on both sides of their firewall.  I figure if a node is behind a 
> firewall it is ok to have a valid IP, but I could be wrong.

You could always use site-local addresses from under fec0::/10 there.  
If you're configuring e.g. PR:EF:IX:ABCD::/64 on a link, you could also 
systematically configure FEC0:0:0:ABCD::/64 on the link.

-- 
Pekka Savola                 "Tell me of difficulties surmounted,
Netcore Oy                   not those you stumble over and fall"
Systems. Networks. Security.  -- Robert Jordan: A Crown of Swords