> knowing the IP of my border router will not help an attacker. The way I 
> see it NAT makes it easier to secure a network, because anything inside 
> that you want to expose has to be EXPLICITLY enabled.

As others have said, that's a function of a firewall, not of a NAT.

And remember - it only adds one layer of security.  If an attacker can
find another way to get something past the firewall, things usually
go downhill very quickly.  It only takes one vulnerable copy(*) of IE or
Outlook behind the firewall to make an outbound connection and pull the
rest of the exploit in.

(*) OK, so a vulnerable Evolution or Pine or Elm or Firefox or Thunderbird
would be equally an issue, except that vulnerable copies of those are much
harder to find.....
