[dns-operations] Effect of NAT on DNS requests

Phillip Hallam-Baker phill at hallambaker.com
Fri Nov 18 22:41:01 UTC 2016


So I was dutifully writing code to randomize the source UDP address of my
DNS requests so as to ensure that I had more than the 16 bits of entropy
from the Request/Response ID.

Then I thought 'what do the packets look like when they hit the NAT box'.

So the NAT box is multiplexing by mapping ports. How unguessable are the
UDP port numbers that the NAT box assigns... ?

Umm.. seems not at all on my box. Anyone ever looked at this?
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.dns-oarc.net/pipermail/dns-operations/attachments/20161118/6cb1d90c/attachment.html>


More information about the dns-operations mailing list