Internal Address Space
Pekka Savola
pekkas@netcore.fi
Sat, 4 May 2002 09:10:41 +0300 (EEST)
On Fri, 3 May 2002, David F. Newman wrote:
> Hi there,
> In the old IPv4 days sites would use private address space inside a firewall
> for either address conservation or just plain old security through obscurity.
>
> Now that a site can get a /48 to do with as they please is it necessary to use
> private IP space anymore. I am wondering if people out there use public
> routable IPs on both sides of their firewall. I figure if a node is behind a
> firewall it is ok to have a valid IP, but I could be wrong.
You could always use site-local addresses from under fec0::/10 there.
If you're configuring e.g. PR:EF:IX:ABCD::/64 on a link, you could also
systematically configure FEC0:0:0:ABCD::/64 on the link.
--
Pekka Savola "Tell me of difficulties surmounted,
Netcore Oy not those you stumble over and fall"
Systems. Networks. Security. -- Robert Jordan: A Crown of Swords