• lightnsfw
    link
    fedilink
    English
    arrow-up
    9
    ·
    25 days ago

    instead think about a large block of public addresses being subdivided between local devices.

    Thinking about all my devices being exposed like that gives me the heebie jeebies. One public facing address hiding everything else on a private network is much less frightening to my monkey brain.

    • Blaster M@lemmy.world
      link
      fedilink
      English
      arrow-up
      9
      ·
      25 days ago

      This is what a firewall is for. Blocks inbound to the whole subnet space. Better than a NAT, which can open a port through STUN or simply a malformed packet.