Re: NAT-PMP not honoring requested external port
Re: NAT-PMP not honoring requested external port
- Subject: Re: NAT-PMP not honoring requested external port
- From: Duane Murphy <email@hidden>
- Date: Wed, 11 Jun 2008 13:45:38 -0700
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
- --- At Wed, 11 Jun 2008 11:07:27 -0700, Jens Alfke wrote:
>* PGP Signed by an unverified key: 06/11/08 at 11:07:28
>
>
>On 9 Jun '08, at 10:44 PM, james woodyatt wrote:
>
>> It seems like the BEHAVE working group is the appropriate place to
>> discuss your expectations of the general case of NAT behavior. I've
>> filed an enhancement request for the AirPort firmware to address
>> this issue, but it would be nice if every NAT had predictable
>> behavior in this regard. Sadly, they don't.
>
>Thanks! Sounds like I'll just have to work around this, as I want to
>be compatible with existing NATs.
>
>(I'm not actually doing simultaneous-open; but I wanted a peer to be
>able to cache the address/port of an incoming connection from another
>peer, and then later be able to use that cached address to try to
>contact that peer again. Instead, I'm changing it to having the peers
>explicitly tell each other their public addresses in-band once a
>socket is opened.)
At that point, it sounds like you've just about reinvented STUN <http://
www.ietf.org/rfc/rfc3489.txt>.
The catch is if both ends are behind NAT firewalls, you'll need a non-
NAT service that can be used to kickoff the NAT port acquisition. ie.
peer-to-peer behind NAT is a difficult problem.
...Duane
-----BEGIN PGP SIGNATURE-----
Version: PGP Desktop 9.8.3 (Build 4028)
Charset: ISO-8859-1
wsBVAwUBSFA5ekrg9acQ4r2CAQgWGAgAoZP0uDUUl3Ta3YTbHhZ3HjxjhDvOEbDf
RDg9w1vPg4KN6xbPBAIPC1+Z3cOyw72F4qd4P9kWoi53Pm5a0JYWlzKuhuzQphym
YPnwcFxjSzEm8Pe8uin81WzxTgb/48gqkmqH/SS0qpmxoNzCoOZj9t7PCxpqy+1H
XH7haVc0rBS8Jq5AXqRLhC2cYgfnEFTUnafSYlxrlT3ZD9M130svOgyQqXTPMfLq
DhJ2hlH3W+kYIEd8A0hDPUAXuOiWXBwgxznN4Rmg4U+H6sgmW3cgx6zQSNnbXnjL
Rrdk3x4efaa3A/cvbYVE8PGo/TzgHtLdu/R0cgRP12xeVeFDckDuIQ==
=f6ca
-----END PGP SIGNATURE-----
_______________________________________________
Do not post admin requests to the list. They will be ignored.
Macnetworkprog mailing list (email@hidden)
Help/Unsubscribe/Update your Subscription:
This email sent to email@hidden