[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
NG Firewalls & IPv6
- Subject: NG Firewalls & IPv6
- From: blake at ispn.net (Blake Hudson)
- Date: Thu, 5 Apr 2018 12:12:52 -0500
- In-reply-to: <CAP032[email protected]>
- References: <CAP032[email protected]>
I've used pfSense (BSD firewall) in a dual stack setup. Not all features
are at parity with v4 (the captive portal doesn't support v6, for
example), but the core features of stateful firewall, DHCPv6, etc seemed
to work without any fuss.
Joe Klein wrote on 4/2/2018 5:58 PM:
> At security and network tradeshows over the last 15 years, I have asked
> companies if their products supported "IPv6". They all claimed they did,
> but were unable to verify any successful installations. Later they told me
> it was on their "Roadmap" but were unable to provide an estimated year,
> because it was a trade secret.
> Starting this last year at BlackHat US, I again visited every product
> booth, asking if their products supported dual-stack or IPv6 only
> operations. Receiving only the same unsupported answers, I decided to focus
> on one product category.
> To the gurus of the NANOG community, What are your experiences with
> installing and managing Next Generations firewalls? Do they support IPv6
> only environments? Details? Stories?
> If you prefer not to disparage those poor product companies, please contact
> me off the list.
> Joe Klein
> "inveniet viam, aut faciet" --- Seneca's Hercules Furens (Act II, Scene 1)
> PGP Fingerprint: 295E 2691 F377 C87D 2841 00C1 4174 FEDF 8ECF 0CC8