Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Cyborg)
  • No Skin
Collapse
Brand Logo

CIRCLE WITH A DOT

  1. Home
  2. Uncategorized
  3. If NAT is security, double NAT must be double security!

If NAT is security, double NAT must be double security!

Scheduled Pinned Locked Moved Uncategorized
24 Posts 18 Posters 19 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • catsalad@infosec.exchangeC catsalad@infosec.exchange

    If NAT is security, double NAT must be double security!

    ghostsarespooky@infosec.exchangeG This user is from outside of this forum
    ghostsarespooky@infosec.exchangeG This user is from outside of this forum
    ghostsarespooky@infosec.exchange
    wrote last edited by
    #2

    @catsalad imagine full-cone NAT

    1 Reply Last reply
    0
    • catsalad@infosec.exchangeC catsalad@infosec.exchange

      If NAT is security, double NAT must be double security!

      fritzadalis@infosec.exchangeF This user is from outside of this forum
      fritzadalis@infosec.exchangeF This user is from outside of this forum
      fritzadalis@infosec.exchange
      wrote last edited by
      #3

      @catsalad
      Carrier Grade NAT is security for people who carry things uphill.

      1 Reply Last reply
      0
      • catsalad@infosec.exchangeC catsalad@infosec.exchange

        If NAT is security, double NAT must be double security!

        ij@nerdculture.deI This user is from outside of this forum
        ij@nerdculture.deI This user is from outside of this forum
        ij@nerdculture.de
        wrote last edited by
        #4

        @catsalad if ROT13 is encryption, double ROT13 must be double encryption!

        😁

        chronovore@infosec.exchangeC dcoderlt@ohai.socialD m3t00@app.wafrn.netM infoseclogger@infosec.exchangeI 4 Replies Last reply
        0
        • catsalad@infosec.exchangeC catsalad@infosec.exchange

          If NAT is security, double NAT must be double security!

          killerqueenlena@transfem.socialK This user is from outside of this forum
          killerqueenlena@transfem.socialK This user is from outside of this forum
          killerqueenlena@transfem.social
          wrote last edited by
          #5

          @catsalad@infosec.exchange I Nat all the time

          1 Reply Last reply
          0
          • catsalad@infosec.exchangeC catsalad@infosec.exchange

            If NAT is security, double NAT must be double security!

            jiub@not.an.evilcyberhacker.netJ This user is from outside of this forum
            jiub@not.an.evilcyberhacker.netJ This user is from outside of this forum
            jiub@not.an.evilcyberhacker.net
            wrote last edited by
            #6

            @catsalad@infosec.exchange that's why i have triple NAT ​​

            CG-NAT
            NAT in the shitty ISP modem/router
            NAT in my own router

            no way to open up ports anyway on this ISP anyway so i'm not really losing anything

            dazo@infosec.exchangeD badsamurai@infosec.exchangeB 2 Replies Last reply
            0
            • jiub@not.an.evilcyberhacker.netJ jiub@not.an.evilcyberhacker.net

              @catsalad@infosec.exchange that's why i have triple NAT ​​

              CG-NAT
              NAT in the shitty ISP modem/router
              NAT in my own router

              no way to open up ports anyway on this ISP anyway so i'm not really losing anything

              dazo@infosec.exchangeD This user is from outside of this forum
              dazo@infosec.exchangeD This user is from outside of this forum
              dazo@infosec.exchange
              wrote last edited by
              #7

              @jiub @catsalad That's what VPS+VPN is for ... To circumvent lousy ISP limitations.

              jiub@not.an.evilcyberhacker.netJ 1 Reply Last reply
              0
              • catsalad@infosec.exchangeC catsalad@infosec.exchange

                If NAT is security, double NAT must be double security!

                me@aron.socialM This user is from outside of this forum
                me@aron.socialM This user is from outside of this forum
                me@aron.social
                wrote last edited by
                #8

                @catsalad If reverse proxy is security.... Actually maybe that would be double? Hmmmm πŸ€”

                1 Reply Last reply
                0
                • catsalad@infosec.exchangeC catsalad@infosec.exchange

                  If NAT is security, double NAT must be double security!

                  guillaumerossolini@infosec.exchangeG This user is from outside of this forum
                  guillaumerossolini@infosec.exchangeG This user is from outside of this forum
                  guillaumerossolini@infosec.exchange
                  wrote last edited by
                  #9

                  @catsalad it isn’t exponential?

                  1 Reply Last reply
                  0
                  • dazo@infosec.exchangeD dazo@infosec.exchange

                    @jiub @catsalad That's what VPS+VPN is for ... To circumvent lousy ISP limitations.

                    jiub@not.an.evilcyberhacker.netJ This user is from outside of this forum
                    jiub@not.an.evilcyberhacker.netJ This user is from outside of this forum
                    jiub@not.an.evilcyberhacker.net
                    wrote last edited by
                    #10

                    @dazo@infosec.exchange @catsalad@infosec.exchange indeed, i forward my server's ssh port to a vps using autossh so i can easily log in remotely and access everything on the lan from there

                    i don't mind accessing things in an ad hoc manner so i haven't bothered with a full vpn yet

                    1 Reply Last reply
                    0
                    • catsalad@infosec.exchangeC catsalad@infosec.exchange

                      If NAT is security, double NAT must be double security!

                      theorangetheme@en.osm.townT This user is from outside of this forum
                      theorangetheme@en.osm.townT This user is from outside of this forum
                      theorangetheme@en.osm.town
                      wrote last edited by
                      #11

                      @catsalad More hairpins in my NAT than a drag queen's wig. πŸ’…πŸ½

                      1 Reply Last reply
                      0
                      • ij@nerdculture.deI ij@nerdculture.de

                        @catsalad if ROT13 is encryption, double ROT13 must be double encryption!

                        😁

                        chronovore@infosec.exchangeC This user is from outside of this forum
                        chronovore@infosec.exchangeC This user is from outside of this forum
                        chronovore@infosec.exchange
                        wrote last edited by
                        #12

                        @ij @catsalad actually... recent advances in processing has made double ROT13 trivially defeatable. NIST now recommends quadruple ROT13.

                        ij@nerdculture.deI 1 Reply Last reply
                        0
                        • chronovore@infosec.exchangeC chronovore@infosec.exchange

                          @ij @catsalad actually... recent advances in processing has made double ROT13 trivially defeatable. NIST now recommends quadruple ROT13.

                          ij@nerdculture.deI This user is from outside of this forum
                          ij@nerdculture.deI This user is from outside of this forum
                          ij@nerdculture.de
                          wrote last edited by
                          #13

                          @chronovore Wasn't that recommendation Double-ROT26 instead?

                          @catsalad

                          chronovore@infosec.exchangeC ij@nerdculture.deI 2 Replies Last reply
                          0
                          • catsalad@infosec.exchangeC catsalad@infosec.exchange

                            If NAT is security, double NAT must be double security!

                            feld@friedcheese.usF This user is from outside of this forum
                            feld@friedcheese.usF This user is from outside of this forum
                            feld@friedcheese.us
                            wrote last edited by
                            #14
                            @catsalad
                            Link Preview Image
                            1 Reply Last reply
                            0
                            • catsalad@infosec.exchangeC catsalad@infosec.exchange

                              If NAT is security, double NAT must be double security!

                              toasterson@chaos.socialT This user is from outside of this forum
                              toasterson@chaos.socialT This user is from outside of this forum
                              toasterson@chaos.social
                              wrote last edited by
                              #15

                              @catsalad From 2FAto 2FNAT? To 12 Factor NAT?

                              1 Reply Last reply
                              0
                              • ij@nerdculture.deI ij@nerdculture.de

                                @chronovore Wasn't that recommendation Double-ROT26 instead?

                                @catsalad

                                chronovore@infosec.exchangeC This user is from outside of this forum
                                chronovore@infosec.exchangeC This user is from outside of this forum
                                chronovore@infosec.exchange
                                wrote last edited by
                                #16

                                @ij @catsalad Fair play. I've been beat at my own game. Your mastery of bad advice is commendable (dubious honor I know, but an honor nonetheless)

                                ij@nerdculture.deI 1 Reply Last reply
                                0
                                • ij@nerdculture.deI ij@nerdculture.de

                                  @chronovore Wasn't that recommendation Double-ROT26 instead?

                                  @catsalad

                                  ij@nerdculture.deI This user is from outside of this forum
                                  ij@nerdculture.deI This user is from outside of this forum
                                  ij@nerdculture.de
                                  wrote last edited by
                                  #17

                                  @chronovore You know... the 13 in ROT13 stands for v1, 3rd grade encryption. So the improved version is v2, 6th grade encryption, hence: ROT26 of the Rorschach-Ohm-Tyson algorithm...

                                  @catsalad

                                  1 Reply Last reply
                                  0
                                  • chronovore@infosec.exchangeC chronovore@infosec.exchange

                                    @ij @catsalad Fair play. I've been beat at my own game. Your mastery of bad advice is commendable (dubious honor I know, but an honor nonetheless)

                                    ij@nerdculture.deI This user is from outside of this forum
                                    ij@nerdculture.deI This user is from outside of this forum
                                    ij@nerdculture.de
                                    wrote last edited by
                                    #18

                                    @chronovore Oh, maybe I should add this to my CV: Master of Bad Advice.

                                    Maybe not. Hmmm... πŸ˜‰

                                    @catsalad

                                    1 Reply Last reply
                                    0
                                    • catsalad@infosec.exchangeC catsalad@infosec.exchange

                                      If NAT is security, double NAT must be double security!

                                      cinebox@masto.hackers.townC This user is from outside of this forum
                                      cinebox@masto.hackers.townC This user is from outside of this forum
                                      cinebox@masto.hackers.town
                                      wrote last edited by
                                      #19

                                      @catsalad good luck, I’m behind seven NATs

                                      1 Reply Last reply
                                      0
                                      • ij@nerdculture.deI ij@nerdculture.de

                                        @catsalad if ROT13 is encryption, double ROT13 must be double encryption!

                                        😁

                                        dcoderlt@ohai.socialD This user is from outside of this forum
                                        dcoderlt@ohai.socialD This user is from outside of this forum
                                        dcoderlt@ohai.social
                                        wrote last edited by
                                        #20

                                        @ij @catsalad
                                        Hear me out: 13 rounds of ROT13

                                        1 Reply Last reply
                                        0
                                        • jiub@not.an.evilcyberhacker.netJ jiub@not.an.evilcyberhacker.net

                                          @catsalad@infosec.exchange that's why i have triple NAT ​​

                                          CG-NAT
                                          NAT in the shitty ISP modem/router
                                          NAT in my own router

                                          no way to open up ports anyway on this ISP anyway so i'm not really losing anything

                                          badsamurai@infosec.exchangeB This user is from outside of this forum
                                          badsamurai@infosec.exchangeB This user is from outside of this forum
                                          badsamurai@infosec.exchange
                                          wrote last edited by
                                          #21

                                          @jiub @catsalad

                                          Link Preview Image
                                          catsalad@infosec.exchangeC 1 Reply Last reply
                                          0
                                          Reply
                                          • Reply as topic
                                          Log in to reply
                                          • Oldest to Newest
                                          • Newest to Oldest
                                          • Most Votes


                                          • Login

                                          • Login or register to search.
                                          • First post
                                            Last post
                                          0
                                          • Categories
                                          • Recent
                                          • Tags
                                          • Popular
                                          • World
                                          • Users
                                          • Groups