logoalt Hacker News

kortillatoday at 6:48 AM1 replyview on HN

> NAT is not for security, it does not provide security.

It’s not for security but it absolutely does provide security and pretending otherwise continues to harm discussions.

I have a pile of ipv4-only IoT devices that have no firewalls of their own that are being protected by the symmetric NAT in my home router. Kick and scream all you want but there is security there and nothing on the internet can reach those devices unsolicited, just like a stateful v4 firewall would provide.


Replies

fshtoday at 7:00 AM

If you really don't have a stateful v4 firewall, your ISP can happily connect to all of your devices.

show 2 replies