Subject: Re: default route and private networks
To: Thor Lancelot Simon <tls@rek.tjls.com>
From: David Young <dyoung@pobox.com>
List: tech-net
Date: 04/13/2005 18:47:09
On Wed, Apr 13, 2005 at 05:39:34PM -0400, Thor Lancelot Simon wrote:
> On Wed, Apr 13, 2005 at 12:29:10PM -0500, David Young wrote:
> >
> > is preferred.  IPv4 should likewise prefer a private sources (192.168/16,
> > 10/8, ...) when the destination is private, a link-local (169.254/16)
> > for link-local destinations, and global source for a global destination.
> 
> You want to be careful with this; it takes us even further away from the
> "strong host model" and may break the assumptions of people who've built
> certain kinds of firewalls.

I don't think so---have you read the patch?

(What is the canonical document on the weak host/strong host model, BTW?
What are the canonical keywords, for that matter?  Google isn't pulling
up anything of use.)

Dave

-- 
David Young             OJC Technologies
dyoung@ojctech.com      Urbana, IL * (217) 278-3933