Firewall Wizards mailing list archives

Re: Off topic: Any one know of a good IPV6 reference book?


From: Jonn Martell <jonn.martell () ubc ca>
Date: Tue, 29 Jul 2003 22:33:17 -0700


Doesn't V6 allow for end-to-end encryption and authentication?

That would solve a lot of issues for secure networks. And with the cap off addresses, it should make thing very interesting. It will change the Internet so that unauthenticated traffic will get a different class of service.

NAT was a hack and although it works fine for small environments it falls apart for large user networks. The lack of auditing is pure nightmare for tracking down abuse from the inside in a large network.

I applaud the DOD efforts, they created the Internet and I have no doubt that mandating V6 will tip the scales for adoption. They did this in early 80 with IP, they'll do it again.

Linksys probably has V6 fully implemented on a lab firmware and I expect transition to be relatively painless (but it's a pure guess at this point)

PS This is the first time that I find myself disagreeing with Marcus...

 ... Jonn Martell


George Jones wrote:

Seriously, I'm in the lucky position of designing a new core for a
rather large entity using all new equipment and building it out in
parallel to the existing...why not look into IPv6?


Avoid needless complexity ?  No requirements ?  No real
problems solved ?

Look into it, sure, but having a hammer does not make
every problem into a nail, nor does it make the hammer
the right solution for all problems.

---George Jones



_______________________________________________
firewall-wizards mailing list
firewall-wizards () honor icsalabs com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards

_______________________________________________
firewall-wizards mailing list
firewall-wizards () honor icsalabs com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards


Current thread: