[Cialug] Slightly OT - IPv6 sillyness

Tim McLaughlin timothy.r.mclaughlin at gmail.com
Wed Jul 9 14:52:19 CDT 2014


Use a statfull firewall. I dont know why NAT would no longer be possible.
just not needed.



On Wed, Jul 9, 2014 at 2:46 PM, Rob Cook <rdjcook at gmail.com> wrote:

> I could be wrong but I think that this covers what you want to do:
> http://www.rfc-editor.org/rfc/rfc4193.txt
>
>
>
> On Wed, Jul 9, 2014 at 2:31 PM, L. V. Lammert <lvl at omnitec.net> wrote:
>
> > I have been trying to grok IPv6 and how it fits into our infrascture, ..
> > and one thing blows my mind - if I understand correctly, there is NO WAY
> > TO SETUP A PRIVATE SUBNET? In my mind the first step of any security is
> to
> > put all the user machines on a 10-net behind a firewall doing NAT, which
> > is impossible with IPv6, as every v6 address is publicly accessible!
> >
> > We had a big discussion about this last month, and the IPv6 chap was
> > dumbfounded that I even wanted to DO a private network.
> >
> > Is this really true? How is one *supposed* to create a sane user subnet
> > with IPv6?
> >
> >         Lee
> > _______________________________________________
> > Cialug mailing list
> > Cialug at cialug.org
> > http://cialug.org/mailman/listinfo/cialug
> >
> _______________________________________________
> Cialug mailing list
> Cialug at cialug.org
> http://cialug.org/mailman/listinfo/cialug
>


More information about the Cialug mailing list