[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: on NAT-PT



> > what I do not want is to have those NAT-PT boxes try to intercept all
> > traffic to a particular domain, because this will break some apps.
> > I'd much rather be able to specify handling on a per-port or per-service
> > basis, even if that means returning 'connection refused' for some ports.
> 
> This sounds awfully lot like a selective TCP relay, and we use it for
> exactly that purpose.

very similar.  there are advantages to doing a TCP relay, and other
advantages to doing v6-v4 translation of IP packets.  it's nice to
be able to pick which one you want.