mtchang / rt-n56u

Automatically exported from code.google.com/p/rt-n56u
0 stars 0 forks source link

Dual Stack IPv6 Security #706

Open GoogleCodeExporter opened 9 years ago

GoogleCodeExporter commented 9 years ago
What steps will reproduce the problem?
1. Enable IPv6 Tunnel/IPv6
2. Enable IPv6 DHCP
3.

What is the expected output? What do you see instead?
Expected outcome is for firewall to provide security, Actually outcome is any 
systems provided with IPv6 are exposed to the tubes/internet

What version of the product are you using? On what operating system?
RT-N56U_3.0.3.3-042_full

----
At some point will the external firewall protect internal assets? 

Original issue reported on code.google.com by bleedapa...@gmail.com on 4 Feb 2013 at 5:58

GoogleCodeExporter commented 9 years ago
This is normal. In IPv6 NAT isn't used as there is no need for it, each device 
on your network has a public facing address. If you want the router to firewall 
them, you should configure ip6tables manually.

Original comment by ruifung...@gmail.com on 9 Jul 2013 at 11:45

GoogleCodeExporter commented 9 years ago
[deleted comment]
GoogleCodeExporter commented 9 years ago
[deleted comment]
GoogleCodeExporter commented 9 years ago
I really think that the IPv6 functionality should be removed until an IPv6 
firewall is provided.  Most users don't know that they don't have an IPv6 
firewall, and the rest don't know how to add ip6tables configuration.  So the 
IPv6 functionality is too dangerous to have until the router firmware can 
provide the required security for it.  Just like IPv4, no one would release 
IPv4 router without a firewall, would they?  So why is it acceptable to have an 
IPv6 router without firewall functionality built in?

Original comment by rvort...@gmail.com on 24 Sep 2013 at 8:50