Live data from Hacker News

So Long Last /8 and Thanks For All the Allocations

labs.ripe.net

21–30 of 201 posts

Re: So Long Last /8 and Thanks For All the Allocations

#21

Earlier quoted context omitted.

What's wrong with IPv6? The only complaints I've seen are "the numbers are bigger", as if that's not the point, and that makes them harder to remember.

My "main issue" with it is that if people are used to being behind NAT, they now have to be a bit more careful about securing their computers (firewall etc.) because every computer now is publicly accessible. Most routers do not even seem to have an IPv6 firewall.

Also some implementations (including Windows) [0] expose the MAC address of your device to the Internet, creating a huge privacy problem. IPv6 is a mess.

[0] https://social.technet.microsoft.com/Forums/windows/en-US/57...

Re: So Long Last /8 and Thanks For All the Allocations

#22
post #4

>we still have around nine million recovered IPv4 addresses in our available pool. Under current policy and growth rates, we expect these to last a further two years. And by then they will have recovered even more. The end of IPv4 is a lie, and how bad IPv6 is and the lack of good transitioning systems doesn't help.

IP addresses accumulate reputations as well as background noise traffic bound for them. While "plenty" of these recovered addresses exist, there is something to be said for being able to get allocations of unused addresses.

Re: So Long Last /8 and Thanks For All the Allocations

#23
post #9

Even in developed countries IPv6 is barely deployed (my UK ISP - BT - pretends that they rolled it out but half of the time my modem tells me IPv6 is not availabled until I force it to reconnect, and no sign of IPv6 on mobile networks). Was looking at whether it was more economical to buy a small address block vs rent it from a datacentre. A /24 address block seems to cost around $4,000 upfront but then you need to p…

You need to make the distinction between PA(provider allocated) and PI(provider independent) objects, as well as the distinction between LIRs(members of the RIPE NCC) and end-users.

PA can only be held for further assignment in their networks by a LIR that is a member of the RIPE NCC, received in two ways: maximum of one IPv4 allocation /22 with proper justification, or acquisition through merger with another LIR. The membership fees are as you mentioned.

PI resources are assigned to end-users in the region, that do not need to be members of the NCC. They do however need a valid end-user agreement with a LIR, and each(unless they are allocated on the same date) object entails a 50€/yr fee, billed to the LIR. PI IPv4 is no longer being assigned from RIPE, but existing ones are openly traded.

My guess would be that the nets you were looking at were PI networks, so no, you do not need to pay the membership fee.

The document ripe-680 covers basically everything you need to know: https://www.ripe.net/publications/docs/ripe-680

Re: So Long Last /8 and Thanks For All the Allocations

#24
post #9

Even in developed countries IPv6 is barely deployed (my UK ISP - BT - pretends that they rolled it out but half of the time my modem tells me IPv6 is not availabled until I force it to reconnect, and no sign of IPv6 on mobile networks). Was looking at whether it was more economical to buy a small address block vs rent it from a datacentre. A /24 address block seems to cost around $4,000 upfront but then you need to p…

Hetzner allows you to have a block, but it requires you to be a Hetzner client.

Also you need to provide a reason why you need it and how are you going to use it.

Re: So Long Last /8 and Thanks For All the Allocations

#25

Earlier quoted context omitted.

What's wrong with IPv6? The only complaints I've seen are "the numbers are bigger", as if that's not the point, and that makes them harder to remember.

My "main issue" with it is that if people are used to being behind NAT, they now have to be a bit more careful about securing their computers (firewall etc.) because every computer now is publicly accessible. Most routers do not even seem to have an IPv6 firewall.

One of these days yall are going to see it my way... in which I think ipv6nat is important to use despite everything you hear about ipv6nat saying it should never be used, usually by people theorycrafting instead of being responsible for actual systems. (Cue the "but nat was never very secure" etc comments.)

Re: So Long Last /8 and Thanks For All the Allocations

#26
post #9

Even in developed countries IPv6 is barely deployed (my UK ISP - BT - pretends that they rolled it out but half of the time my modem tells me IPv6 is not availabled until I force it to reconnect, and no sign of IPv6 on mobile networks). Was looking at whether it was more economical to buy a small address block vs rent it from a datacentre. A /24 address block seems to cost around $4,000 upfront but then you need to p…

Andrews & Arnold do a tunnel that supports ipv6 - their support and network is awesome, too.

Re: So Long Last /8 and Thanks For All the Allocations

#28

Earlier quoted context omitted.

What's wrong with IPv6? The only complaints I've seen are "the numbers are bigger", as if that's not the point, and that makes them harder to remember.

My "main issue" with it is that if people are used to being behind NAT, they now have to be a bit more careful about securing their computers (firewall etc.) because every computer now is publicly accessible. Most routers do not even seem to have an IPv6 firewall.

Ultimately we do need to secure our endpoint devices. They need to be secure by default. NAT and firewalls let us get away with insecure broken OSes and services for a while, but not forever, and they create the "soft underbelly problem" where once someone manages to hop your firewall everything is vulnerable.

Re: So Long Last /8 and Thanks For All the Allocations

#29
post #27

Is it time to just admit IPv6 is a failure and move on to new standard? Adoption is very slow though economical needs are already here. Instead of complaining about users maybe we should do something so they actually want to switch?

Why would IPv6 be a failure ? It sounds like you don't know what you're talking about

Re: So Long Last /8 and Thanks For All the Allocations

#30
post #9

Even in developed countries IPv6 is barely deployed (my UK ISP - BT - pretends that they rolled it out but half of the time my modem tells me IPv6 is not availabled until I force it to reconnect, and no sign of IPv6 on mobile networks). Was looking at whether it was more economical to buy a small address block vs rent it from a datacentre. A /24 address block seems to cost around $4,000 upfront but then you need to p…

> and no sign of IPv6 on mobile networks

Not quite true - EE (so one of the 'big four' providers rather than a small MNVO) has IPv6 support. Right now, my phone has an IP address assigned out of EE's 2a01:4c8::/29 netblock and I can connect to IPv6 only websites.

My phone isn't super modern either - a 2016 era OnePlus 3 running Android 8.0.

Post reply on HN