Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> RRAS, we found, only uses the machine base IP address for the outside of the NAT. It will not use additional IP addresses in the public address pool, no matter how many IP addresses are in that pool.

<facepalm> Why exactly did they gloss over this as if it was no big deal? </facepalm>

The way that I see it they should either:

1) Fix RRAS to use all IPs in the public address pool.

2) Fix ipnat.sys to use a lookup table that keys on external_destination_ip+port rather than just port.

3) Make an announcement that several users are abusing the network with excessive BitTorrent usage which is taxing the NAT. State that BitTorrent users will be kicked from the network if the situation does not improve.

4) Make an announcement asking BitTorrent users to limit the total number of ports their client is using. Most BitTorrent clients (even rtorrent) allow you to limit the number of connections on a global or per-torrent basis. There really is no reason that one needs to have upwards of 800 (or even 2500) ports at a given time.

In general, #1 and #2 should be done anyways regardless of how they solved the immediate situation at the conference.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: