Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

"Private subnet" is just one way to accomplish it - what you want is a firewall that drops inbound traffic by default, and private subnet/NAT is one common way to do it that does have some downsides (extra complexity - you need a NAT gateway now).


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: