awakenings
asked on
Syslog, NAT, and statefulness
I wanted to get a second opinion.
I have an internal address of X. It appears to be stateful from the syslogs.
I have an external address of Y. It too appears to be stateful.
There are X connections to Y on a port. This seems normal.
There are Y connections to X on the same port. Is this normal if you don't allow inbound access with stateful connections?
Here is the sanitized syslog message
Built outbound TCP connection 5425442354 for faddr Y/some port gaddr X/some port laddr X/some port
I have an internal address of X. It appears to be stateful from the syslogs.
I have an external address of Y. It too appears to be stateful.
There are X connections to Y on a port. This seems normal.
There are Y connections to X on the same port. Is this normal if you don't allow inbound access with stateful connections?
Here is the sanitized syslog message
Built outbound TCP connection 5425442354 for faddr Y/some port gaddr X/some port laddr X/some port
ASKER
Rajesh,
Assume X is 10.0.0.5. Assume Y is 54.27.32.54. These IP's are sanitized To go from X to Y there is a NAT translation and the connection is stateful. In this scenario is simple. I'm analysing the connectivity from X to Y and trying to determine if there is an inbound connection as well.
Assume X is 10.0.0.5. Assume Y is 54.27.32.54. These IP's are sanitized To go from X to Y there is a NAT translation and the connection is stateful. In this scenario is simple. I'm analysing the connectivity from X to Y and trying to determine if there is an inbound connection as well.
SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
thanks :)
Cheers,
Rajesh