Chapter 6

1: What is port address translation?
A1: Answer: In PAT, the RFC 1918 addresses are translated into a small number of routable IP addresses (often just one routable IP address). The device doing PAT distinguishes between the traffic destined for the various RFC 1918 addresses by tracking the source TCP or UDP ports used when the connection is initiated.
2: What is the primary difference between NAT and proxy?
A2: Answer: NAT is transparent to the end hosts, but proxy is not.
3: What is PAT's security advantage?
A3: Answer: PAT disallows connections to devices sitting behind the PAT device that have not initiated connections to the outside world themselves.
4: What is the difference between connection table maintenance for PAT and that of a ...

Get Network Security Principles and Practices now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.