The article seems to perpetuate one of those age old myths that NAT has something to do with protection.Yes, in a very superficial sense, you can't literally route a packet over the internet backwards to a host behind NAT without matching a state entry or explicit port forwarding