Does anyone actually use #IPv6 in a prosumer/small business setting?
For example #UniFi has abysmal support for it, basically if you want failover, dual WAN, etc. you just have to completely disable IPv6
=> More informations about this toot | More toots from jjtech@infosec.exchange
For another thing, stuff like RAs are poorly understood and poorly implemented…
I keep seeing even larger businesses who can setup IPv6 properly with their ISP just disabling it entirely because of vulnerabilities and poorly understood consequences:
https://www.reddit.com/r/sysadmin/comments/1ciykzc/ipv6_leave_enabled_or_remove_proscons_lessons/
=> More informations about this toot | More toots from jjtech@infosec.exchange
I even saw comments saying “just hire someone to professionally design your IPv6 network”…
If the network design needs to be so complex that it can’t be explained to someone who doesn’t specialize in it… that is completely unworkable
All developers need to be able to correctly reason about the (security) properties of the network, at least at a basic level. It shouldn’t be black magic.
=> More informations about this toot | More toots from jjtech@infosec.exchange This content has been proxied by September (ba2dc).Proxy Information
text/gemini