Operating modes and functions
ELSA LANCOM Business
72
from the welcome savings, IP masquerading has the added benefit of guarding very
effectively against attacks on the local network from the Internet.
Two addresses for the router
Masquerading pits two opposing requirements of the router against one another: While
it must have an IP address which is valid on the local network, it must also have an
address valid on the Internet. Since these two addresses may not in principle be located
on the same logical network, there is only one solution: two IP addresses are required.
The router is therefore assigned an
Inter
net address and an
intra
net address, each with
its own fitting network mask. Use the 'Masquerade' option in the routing table to inform
the router which of the two addresses to use when transferring the packets. If a specific
address is requested from the provider, two options are available for the actual address
assignment:
쮿
The provider assigns the desired address to the router. The network mask now
decides how many computers are masked behind the router.
– IP address with full '255.255.255.255' network mask: This is your own unique IP
address, registered by the NIC. None of the other computers on the network
have valid Internet addresses and are masked behind the router's fixed address.
– IP address with an incomplete network mask, e.g. '255.255.255.248': You have
several registered IP addresses, one of which you assign to the router. The
remaining IP addresses are assigned permanently to devices on the intranet,
which can then use unmasked connections to access the Internet. The other
devices can still access the Internet using masked connections.
쮿
The provider assigns another address to the router. Then
all
computers in the local
network are masked behind the assigned address.
How does IP masquerading work?
Masquerading makes use of a characteristic of TCP/IP data transmission, which is to use
port numbers for destination and source as well as the source and destination addresses.
When the router receives a data packet for transfer it now notes the IP address and the
sender's port in an internal table. It then gives the packet its unique IP address and a
new port number, which could be any number. It also enters this new port on the table
and forwards the packet with the new information.
The response to this new packet is now sent to the IP address of the router with the new
sender port number. The entry in the internal table allows the router to assign this
response to the original sender again.
You can view these tables in detail in the router statistics (see also 'Status').
Содержание LANCOM Business LC-4X00
Страница 1: ...Manual ELSA LANCOM TM Business No 20857 0999...
Страница 4: ......
Страница 10: ...Content ELSA LANCOM Business X...
Страница 22: ...Introduction ELSA LANCOM Business 12...
Страница 42: ...Configuration modes ELSA LANCOM Business 32...
Страница 112: ...Operating modes and functions ELSA LANCOM Business 102...
Страница 146: ...Workshop ELSA LANCOM Business 136...
Страница 152: ...Appendix ELSA LANCOM Business 142...
Страница 160: ...Glossary ELSA LANCOM Business 150...
Страница 170: ...Index ELSA LANCOM Business 160...
Страница 259: ...TCP IP ports ELSA LANCOM Business R89 rscsb 10011 udp qmaster 10012 tcp qmaster 10012 udp Capab Port no Protocol...
Страница 260: ...TCP IP ports ELSA LANCOM Business R90...