NAT Network Address Translation. Reading CNI – pp. 251-253 Port Mapping LA – pp. 331-335 NAT.

Slides:



Advertisements
Similar presentations
CST Computer Networks NAT CST 415 4/10/2017 CST Computer Networks.
Advertisements

TCP/IP Christopher Zacky. lolwut Decimal Numbers.
©2012 ClearOne Communications. Confidential and proprietary. COLLABORATE ® Video Conferencing Networking Basics.
Configuring a Router with RIP Basic Configuration and Show Commands.
© 2007 Cisco Systems, Inc. All rights reserved.ICND1 v1.0—5-1 WAN Connections Enabling the Internet Connection.
Network Security Topologies Chapter 11. Learning Objectives Explain network perimeter’s importance to an organization’s security policies Identify place.
CS470, A.SelcukReal-Time Communication Issues1 Real-Time Communication Security IPsec & SSL Issues CS 470 Introduction to Applied Cryptography Instructor:
1 Network Address Translation (NAT) Relates to Lab 7. Module about private networks and NAT.
Small Office Service Serial Router Connects Internal Stations to Shared Broadband Access Service Small Office Serial Router Shared Broadband Line ISP.
Chapter 6 Network Address Translation (NAT). Network Address Translation  Modification of source or destination IP address  Needed by networks using.
Wi-Fi Structures.
Source Port # (16)Destination Port # (16) Sequence Number (32 bits) Acknowledgement Number (32 bits) Hdr Len (4) Flags (6)Window Size (16) Options (if.
Subnetting.
Hardware Firewall Feature © N. Ganesan, Ph.D.. Chapter Objectives Show the configuration of a hardware firewall such as Dlink DI 604 Illustrate the sharing.
CCNA Guide to Cisco Networking Fundamentals Fourth Edition Chapter 9 Network Services.
Section 461.  ARP  Ghostbusters  Grew up in Lexington, KY  Enjoy stargazing, cycling, and mushroom hunting  Met Mario once (long time ago)
Firewalls Marin Stamov. Introduction Technological barrier designed to prevent unauthorized or unwanted communications between computer networks or hosts.
Middleboxes & Network Appliances EE122 TAs Past and Present.
Day15 IP Space/Setup. IP Suite of protocols –TCP –UDP –ICMP –GRE… Gives us many benefits –Routing of packets over internet –Fragmentation/Reassembly of.
4: Addressing Working At A Small-to-Medium Business or ISP.
1 © 2003, Cisco Systems, Inc. All rights reserved. CCNA 4 v3.0 Module 1 Scaling IP Addresses.
9/11/2015Home Networking1 Bob.test Have Road Runner Unhappy about reports of constant probes of machines Policy decision –I want to prevent unauthorized.
1 IP: putting it all together Part 2 G53ACC Chris Greenhalgh.
Firewalls.
1 NAT Network Address Translation Motivation for NAT To solve the insufficient problem of IP addresses IPv6 –All software and hardware need to be updated.
Common Devices Used In Computer Networks
Network Address Translations Project no. : 12 Prof. Edmund Gean Presented by DhruvaPatel( ) Sweta Patel( ) Rushika Patel ( ) Guided.
TCP/IP Protocols Contains Five Layers
Review the key networking concepts –TCP/IP reference model –Ethernet –Switched Ethernet –IP, ARP –TCP –DNS.
© 2007 Cisco Systems, Inc. All rights reserved.Cisco Public ITE PC v4.0 Chapter 1 1 Planning the Addressing Structure Working at a Small-to-Medium Business.
Private Network Addresses IP addresses in a private network can be assigned arbitrarily. – Not registered and not guaranteed to be globally unique Generally,
Layer 3: Internet Protocol.  Content IP Address within the IP Header. IP Address Classes. Subnetting and Creating a Subnet. Network Layer and Path Determination.
Network Security1 – Chapter 6 – NAT and Security Network Address Translation (NAT) is useful: –Hide internal private IP addresses –Conserve routable IP.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco Public 1 Version 4.0 Implementing IP Addressing Services Accessing the WAN – Chapter 7.
Internet Protocol Formats. IP (V4) Packet byte 0 byte1 byte 2 byte 3 data... – up to 65 K including heading info Version IHL Serv. Type Total Length Identifcation.
Network Address Translation External/ Internal/. OVERLOADING In Overloading, each computer on the private network is translated to the same IP address;
NAT and PAT. Topics RFCs 1597(obs by 1918), 1631,1917, 1918 & 1797 Network Address Translation – Static and Dynamic Port Address Translation Issues with.
© 2008 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID 1 Chapter 11: Network Address Translation for IPv4 Routing And Switching.
IP addresses IPv4 and IPv6. IP addresses (IP=Internet Protocol) Each computer connected to the Internet must have a unique IP address.
1 Lecture 13 IPsec Internet Protocol Security CIS CIS 5357 Network Security.
1 Computer Communication & Networks Lecture 19 Network Layer: IP and Address Mapping Waleed Ejaz.
1 Figure 3-13: Internet Protocol (IP) IP Addresses and Security  IP address spoofing: Sending a message with a false IP address (Figure 3-17)  Gives.
VersionIHLTotal Length FlagsIdentificationFragment Offset Time To Live Destination Address OptionsPadding Protocol = 6 Type of Service IP Header TCP Destination.
IP Addressing.
NAT/PAT by S K SATAPATHY
1 Network Address Translation. 2 Network Address Translation (NAT) Extension of original addressing scheme Motivated by exhaustion of IP address space.
Data Communications and Networks Chapter 6 – IP, UDP and TCP ICT-BVF8.1- Data Communications and Network Trainer: Dr. Abbes Sebihi.
Discovery 2 Internetworking Module 4 JEOPARDY K. Martin.
CS 3700 Networks and Distributed Systems
Network Address Translation
Planning the Addressing Structure
NAT (Network Address Translation)
NAT : Network Address Translation
Network Address Translation (NAT)
Network Address Translation
CS 3700 Networks and Distributed Systems
– Chapter 6 – NAT and Security
Network Address Translation (NAT)
Standards Basics.
Introducing To Networking
Hiding Network Computers Gateways
IP Address.
New Solutions For Scaling The Internet Address Space
NAT and Security Source: Ch. 6 of Malik
CS 3700 Networks and Distributed Systems
Planning the Addressing Structure
NAT (Network Address Translation)‏
Planning the Addressing Structure
Planning the Addressing Structure
Network Address Translation (NAT)
Presentation transcript:

NAT Network Address Translation

Reading CNI – pp Port Mapping LA – pp NAT

NETWORK ADDRESS TRANSLATION

Network Address Translation Gateway and firewall hardware often has network address translation (NAT) functionality built in Hosts protected behind a firewall commonly have addresses in the "private address range“ Hides the true address of protected hosts Originally, developed to address the limited amount of IPv4 routable addresses available  By companies  By individuals Reduce amounts of addresses required  Reduce the cost of obtaining enough public addresses for every computer in an organization. Hiding the addresses of protected devices has become an increasingly important defense against network reconnaissance

Nat Flavors Two kinds of network address translation: Simple "NAT"  also sometimes named "Network Address Port Translation" or "NAPT" or even PAT Involves the mapping of port numbers Allows multiple machines to share a single IP address TCP Header Format | Source Port | Destination Port | | Sequence Number | | Acknowledgment Number | | Data | |U|A|P|R|S|F| | | Offset| Reserved |R|C|S|S|Y|I| Window | | | |G|K|H|T|N|N| | | Checksum | Urgent Pointer | | Options | Padding | | data |

Nat Flavors Two kinds of network address translation: “Other” NAT  "one-to-one NAT" or "basic NAT" or “static NAT” Involves only address translation, not port mapping Requires a unique external IP address for each simultaneous connection Broadband routers often use this feature  Sometimes labeled "DMZ host“  Allows a designated computer to accept all external connections even when the router itself uses the only available external IP address Example 50 hosts in the LAN  All with Local addresses 10 IP addresses for the Internet Up to 10 of the LAN hosts can access the internet through the Internet IP addresses

NATP NAT with port-translation comes in two sub- types: Source address translation (source NAT) Re-writes the IP address of the computer which initiated the connection Destination address translation (destination NAT) In practice Both are usually used together in coordination for two-way communication

NAT Summary Allows private addresses access to internet Allows many addresses to share A single address A small set of addresses