[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [RRG] Consensus? End-user networks need their own portable address space



On Fri, Jun 20, 2008 at 12:52 AM, Tony Li <tony.li@tony.li> wrote:
>
> Hi Bill,
>
> |The requirement is that end users (meaning folks who operate servers
> |in this case) be able to  change service providers:
> |
> |1. Without a major overall effort, and
> |2. Without requiring any changes outside of the end user's
> |administrative control.
> |
> |In the past two decades, NO ONE has demonstrated a mechanism for
> |meeting these two requirements that has proven out in practice EXCEPT
> |for assigning PI addresses to the end user.
>
>
> False.  Put the site behind a NAT box.
>
> Changing providers now simply requires a trivial change to the NAT.

Tony,

Placing your mail server behind a NAT box and changing the NAT IP
during a move does absolutely nothing to update the public and private
RBLs and whitelists.

Placing your VPN concentrator behind a NAT box and changing the NAT IP
during a move does absolutely nothing to update the customer IPSec VPN
clients which connect to it.

Placing your customer web servers behind a NAT box and changing the
NAT IP during a move does absolutely nothing to update the
customer-controlled DNS domains pointing to it. They can't avoid that
problem up front with CNAMEs to your DNS because they often desire the
same name that holds the NS and SOA records to reach the web site.

Demonstrated: three common configurations which fail to pass criteria
2 despite the introduction of NAT.

Your assertion that NAT resolves the two requirements without PI is
proven incorrect. Nice try, please play again.

Regards,
Bill Herrin


-- 
William D. Herrin ................ herrin@dirtside.com bill@herrin.us
3005 Crane Dr. ...................... Web: <http://bill.herrin.us/>
Falls Church, VA 22042-3004

--
to unsubscribe send a message to rrg-request@psg.com with the
word 'unsubscribe' in a single line as the message text body.
archive: <http://psg.com/lists/rrg/> & ftp://psg.com/pub/lists/rrg