Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 17 Feb 2005 13:53:25 +1100
From:      Edwin Groothuis <edwin@mavetju.org>
To:        Andrew Heyn <aheyn@jmsent.com>
Cc:        freebsd-net@freebsd.org
Subject:   Re: paranoia
Message-ID:  <20050217025325.GB1035@k7.mavetju>
In-Reply-To: <CLELJKHKLJLNMNHGHFIDAECHCBAA.aheyn@jmsent.com>
References:  <CLELJKHKLJLNMNHGHFIDAECHCBAA.aheyn@jmsent.com>

next in thread | previous in thread | raw e-mail | index | archive | help
On Wed, Feb 16, 2005 at 09:35:50PM -0800, Andrew Heyn wrote:
> I always see people replace their IPs with fake replacements.
> Is this paranoia really warranted?  Why not disconnect the cat5 if you want
> to do this?

If they're smart and know what they are doing, it will make things
easier to read: Machine A and Machine B are easier to recognize
than 192.218.32.34 and 129.218.34.32.

If they are not smart or misinformed, it will things impossible to
understand what is going on: x.y.z.35 and x.y.z.24 is totally the
wrong anonymousation[sp] of 1.2.3.35 and 5.6.7.24. It will also
give the wrong assumptions when you think it are both public addresses
while one is, or both are, private RFC addresses.

And than the third group who complain that their DNS server isn't
properly working and then give ns1.exmaple.org and test.example.org
because they want to anonymize it :-)

If they want to be paranoid, let them be. It will only make debugging
harder because they don't give the raw data.

Edwin
-- 
Edwin Groothuis      |            Personal website: http://www.mavetju.org
edwin@mavetju.org    |          Weblog: http://weblog.barnet.com.au/edwin/



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20050217025325.GB1035>