Earlier quoted context omitted.
NAT is horrible.
Leaned on heavily to protect cheap IOT devices. Could you imagine the bot armies if every IOT device was NOT behind a NAT?
IPv6 Deployment Status
31–40 of 78 posts
Re: IPv6 Deployment Status
#32Earlier quoted context omitted.
NAT is horrible.
Leaned on heavily to protect cheap IOT devices. Could you imagine the bot armies if every IOT device was NOT behind a NAT?
This can indeed be replaced with firewalls on each IPv6 client, but you have to concede that just putting a router between your computer and modem adds a ton of security for very little effort or know-how.
But NAT in itself is a workaround for IPv4 limitations with significant problems, which has become permanent because there's nothing as permanent as temporary solutions.
Re: IPv6 Deployment Status
#33Earlier quoted context omitted.
Most phone companies now provide IPv6 natively over their 4G/5G service, and IPv4 goes through carrier-grade NAT.
My ISP offers a plan without IPv4 at a lower price. v4 websites only are served through their NAT64/DNS64 infrastructure and it works really well except for some dumb applications that hardcode the IPv4 instead of using domain names (yeah, and also the ones that rewrite the entire stack in C and only support AF_INET...)
Re: IPv6 Deployment Status
#34At this point I'm personally convinced that ipv6 is a failed technology. It used to be interesting to see the news about new ipv6 deployments, adoption ratings etc. Now I basically don't care.
All that said I do sort of wonder when or if we'll ever move off dual stack. I think there's a strong argument that running two protocols at once is riskier then the combined risks of the two.
Re: IPv6 Deployment Status
#35Earlier quoted context omitted.
Most phone companies now provide IPv6 natively over their 4G/5G service, and IPv4 goes through carrier-grade NAT.
Pretty sure all xbox services use v6 where possible as well.
Re: IPv6 Deployment Status
#36Earlier quoted context omitted.
Leaned on heavily to protect cheap IOT devices. Could you imagine the bot armies if every IOT device was NOT behind a NAT?
The virtues of NAT lie more in their nature of being blanket blacklist firewalls by default. This can indeed be replaced with firewalls on each IPv6 client, but you have to concede that just putting a router between your computer and modem adds a ton of security for very little effort or know-how. But NAT in itself is a workaround for IPv4 limitations with significant problems, which has become permanent because ther…
This is so basic that any argument against it needs some strong evidence.
You can search "IPv6 pinhole" and find plenty of documentation from router manufacturers and ISPs on this.
Re: IPv6 Deployment Status
#37Does anyone know why German universities are so slow to deploy IPv6? Almost none has their website reachable over IPv6 or IPv6 on their internal network.
My alma mater (FAU Erlangen, https://fau.de ) did have some internal and external IPv6 already back when addresses were still 6bone 3ffe::, 20 years ago. Don't know since when the main website has been IPv6-reachable, but it has definitely been over 10 years.
Re: IPv6 Deployment Status
#38At this point I'm personally convinced that ipv6 is a failed technology. It used to be interesting to see the news about new ipv6 deployments, adoption ratings etc. Now I basically don't care.
Re: IPv6 Deployment Status
#39Earlier quoted context omitted.
NAT is horrible.
Leaned on heavily to protect cheap IOT devices. Could you imagine the bot armies if every IOT device was NOT behind a NAT?
Re: IPv6 Deployment Status
#40All we need is ONE major website to declare 24 Hour brown-out for IPv4 and put a message something like "Contact your ISP to upgrade your connection". Alas, publicly traded companies....