Answer the question
In order to leave comments, you need to log in
Why does my vps have 24 masks. Wouldn't 32 be safer?
Good day.
I apologize for the stupid question, but this is how I eliminate gaps in knowledge.
For the purpose of self-education, I took a vps for myself, and noticed that I received the address xxx151/24. Therefore, although I am not the owner of the machines at addresses xxx1-254/24, I see them perfectly. That is, there is a ping, in theory I can try to connect via ssh and so on.
Why not give me the address xxx151/32 so I don't know about other machines on the same subnet as me? At least in terms of security.
I understand that the question is probably stupid, but I hope that the answer to it will bring me closer to a better understanding of how networks work :)
Thank you in advance :)
Answer the question
In order to leave comments, you need to log in
If you set the /32 mask, you will have only one host on the network, and you need at least 3 - your server, router, and broadcast. So the network can be as high as /30. And the hoster will have to create such a network for each user and set the router to each by default.
With public IPs, this makes no sense - you will still be able to ping them in the same way, exactly like any other address on the Internet, but the addresses are wasted.
In terms of security, all VPSs, including yours, stick out with a public IP address on the Internet. Your particular host simply doesn't bother with creating a private grid per user.
And what's stopping you from contacting the car with a mask 32 152
How do you prohibit a mask in general, do you need to apply?
Didn't you think that with Any mask you can
Ping and break into any address on the Internet? It's not like it's forbidden
I noticed that I received the address xxx151/24
In this case, only the Firewall setting can protect you. All VPS hosters have external addresses and you can connect to them anyway (unless, of course, the admin of the destination server has taken care of security).
Specifying the /30 mask is fraught for the hoster with squandering the already expensive IPv4 for imaginary security.
If the /24 mask is specified, the hoster allocates 2 IPs for official use, and the rest can be distributed to clients.
Networks with white addresses are announced in BJP at least /24. Plus pr did not want to grind with grids ( /30 to do) and spend white addresses on default gateway and broadcast's. And he did the right thing.
Didn't find what you were looking for?
Ask your questionAsk a Question
731 491 924 answers to any question