nanog mailing list archives

Re: Important IPv6 Policy Issue -- Your Input Requested


From: "Jerry Eyers" <jeyers () sloancc net>
Date: Wed, 10 Nov 2004 03:14:51 -0500 (Eastern Standard Time)

"Get a firewall" is not a valid response when you have lusers
to drop the latest netgear whatever onto their PC and dial
to some provider somewhere.  Your firewall is useless to 
protect that segment.  In many cases NAT is the ONLY
protection you end up with in this scenario, a scenario that
is far to common in the corporate world.

Jerry 
 
-------Original Message-------
 
From: Theo de Whaat
Date: 11/09/04 15:28:44
To: jeyers () sloancc net
Subject: Re: Important IPv6 Policy Issue -- Your Input Requested
 
Get a firewall.  You shouldn't rely on NAT to provide this
functionality.  How long has IPv6 been on the horizon, promising to
make NAT unnecessary?
 
I want my inside addresses to be
non accessible from the 'real world', ever.

Current thread: