At my new job, their existing internal (behind NAT) IP infastructure (approx. 50 nodes) is in the 131.#.#.# IP block, which is obviously not part of RFC1918 (private non-routable IP blocks), nor is it even owned by the company. The logic behind having this IP configuration is for security, with regards to outside networks trying to get into the LAN.
Setup:
DSL
|
|
V
Gateway device - WAN IP is public.
|
LAN IP block behind NAT is 131.....
|
|
V
Nodes on LAN... 131.#.#.1-254
Is it worth it to convince them to change this to RFC1918 addresses on the LAN? Everything actually works "fine" now, so "it ain't" broke per say.
Setup:
DSL
|
|
V
Gateway device - WAN IP is public.
|
LAN IP block behind NAT is 131.....
|
|
V
Nodes on LAN... 131.#.#.1-254
Is it worth it to convince them to change this to RFC1918 addresses on the LAN? Everything actually works "fine" now, so "it ain't" broke per say.