Re: 192.168 - why?



Hello All,

Antonio Macchi wrote:


excuse me... my stupid answer

i mean:
you *always* have the same number of free addresses... independently on
what class you choose.






It's all a matter of conventions.....

In the early days of internet, it was decided that there are networks with
16 millions of hosts, networks with 64k hosts or networks with 254 hosts.

Hosts within a "network" can reach each other without routing and reply to
broadcast packages.
The class is determined by the first number of the IP address.


In addition, it was decided that 10.0.0.0 with 16M hosts,
172.(16-31).mmm.nnn with 64K hosts and 192.168.mmm.nnn with 254 hosts will
never be used on the internet and are free for local LAN use.

As long as your ISP gives you a routable Internet address and does not
put you into another non-routable network, you are free to do what you want
behind your NAT router, as long as you use one of the "free" ranges.

A 10.0.0.0/8 network will have the same performance as a 192.68.0.0/24
network and the same as a 10.0.0.0/24 network, you will only violate a
convention in the last case....

You should only be careful in case of VPN's, if a main office has VPN
connections to local offices, you have some routing problems if several
offices use 10.0.0.0/8 in their LANS...

Kind Regards,
H.Janssen






Technically, there is no difference at all.

.



Relevant Pages

  • Re: Routing and Domains
    ... But none of my hosts on the 172.16.1.0 network can access the Internet, ... Everyone on the 192.168.7.0 network can access the Internet though. ... RRAS 1 SVR ...
    (microsoft.public.win2000.ras_routing)
  • Re: Using netmask ffffffff
    ... I am not trying to use the /32 mask for my entire network. ... The most important thing these new hosts need is connection to the outside ... The trouble is that even if I set-up firewall rules to filter their ... the switch they are all connected to, as only their internet traffic will ...
    (comp.unix.bsd.freebsd.misc)
  • Re: Qualys
    ... I have worked quite closely with Qualys support and can confirm they do not have access to your scan/vuln data. ... Internet based scanning only occurs for Internet facing hosts. ... For internal hosts you need to purchase an appliance that would be located on your internal network. ... In my experience I have always had to slow down the scan in order to ensure no network devices get bumped off due to scan packets. ...
    (Pen-Test)
  • Re: How secure is SSL emails?
    ... >adversary able to manipulate the entire network (hosts and links) to his ... >of the nodes (an internal local active attacker), ... That would mean owning the Internet. ...
    (sci.crypt)
  • Re: Heavyweight Network Mapping Tools
    ... multiple threads so as not to adversely effect any individual sub network ... The goals for the OPTE project are slightly ... >> Hosts alive through ICMP ... I was loooking more for the vulnerability scanning approach without ...
    (Pen-Test)