[OpenSER-Devel] SF.net SVN: openser: [2753] trunk/modules/nathelper

Juha Heinanen jh at tutpro.com
Thu Sep 13 12:33:42 CEST 2007


Dan Pascu writes:

 > One problem with this is that most of the internet service providers will 
 > block IP packets that have a source address not in the originating 
 > network to limit DOS attacks and other security related problems.
 > As a consequence, this will only work if the spoofed address is in the 
 > same LAN with the proxy, but it will almost certainly fail if your load 
 > balancer is in another location.

sure.  i was just thinking an openser farm fontended by a load balancer
all in the same root.

-- juha



More information about the Devel mailing list