Taking another look at the settings on the watchguard box, it looks just as likely that it's just doing masquerade or randomly picking a public IP as it would be to actually be doing 1:1 NAT. And well, if all the PCs are for end users, neither the "just masquerade" or "random public" is detrimental to their use of the internet.
↧