From: Thomas Lussnig <thomas.lussnig@bewegungsmelder.de>
To: netfilter@lists.samba.org
Subject: Re: Arbitrary Netmasks
Date: Wed, 29 May 2002 07:22:12 +0200 [thread overview]
Message-ID: <3CF46584.8080204@bewegungsmelder.de> (raw)
In-Reply-To: Pine.LNX.4.44.0205281532550.12350-100000@dlang.diginsite.com
[-- Attachment #1: Type: text/plain, Size: 998 bytes --]
>
>
>I've always wondered about the concept of useing wierd netmasks on private
>internal networks, just to thourouly confuse anyone who actually breaks
>into them (obsurity isn't security by itself, but any little bit you can
>add on and anything you can do that will break standard tools....)
>
>never had a chance to actually implement it however :-)
>
I think this "wird" netmask could on bigger firm's have an very simple
explanation.
Example:
Firm with 2 Floors and 4 Subunits each subunit have an router with
100MBit and the are numbered
serial when they was created.
1 Floor 10.0.0.0/16 10.2.0.0/24
2 Floor 10.1.0.0/16 10.3.0.0/24
Now the 100MBit backbone is replaced with fibber optik and one router
per floor. And the admin is to lacy
to renumber 2 whole units. This is an simple example but i think from
these direction it come. That it
is sometimes easyer to use wired netmask insteed of two or more routing
entry's and agregation
wasn't choice because of change time.
Cu Thomas
[-- Attachment #2: S/MIME Cryptographic Signature --]
[-- Type: application/x-pkcs7-signature, Size: 3349 bytes --]
next parent reply other threads:[~2002-05-29 5:22 UTC|newest]
Thread overview: 8+ messages / expand[flat|nested] mbox.gz Atom feed top
[not found] <Pine.LNX.4.44.0205281532550.12350-100000@dlang.diginsite.com>
2002-05-29 5:22 ` Thomas Lussnig [this message]
[not found] <3CF383A9.7000106@mytomorrow.de>
2002-05-28 14:07 ` Arbitrary Netmasks Filipe Almeida
2002-05-28 18:45 ` Henrik Nordstrom
2002-05-29 9:57 ` Filipe Almeida
2002-05-28 15:03 ` Patrick Schaaf
2002-05-28 18:53 ` Henrik Nordstrom
[not found] <20020528132402.GN9802@ns>
2002-05-28 13:30 ` Joost Remijn
2002-05-28 13:35 ` Thomas Heinz
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=3CF46584.8080204@bewegungsmelder.de \
--to=thomas.lussnig@bewegungsmelder.de \
--cc=netfilter@lists.samba.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.