Hacker News new | ask | show | jobs
by VLM 1321 days ago
/56 aren't as generous as you'd think as companies "often" use VLANs and people selling network gear have always pushed for microsegmentation (rather than having a VLAN for the entire 3rd floor which would technically fit, have a distributed VLAN just for the three accounting people and their eight servers).

In theory you could have 10 bits just of VLANs without doing microsegmentation and strange virtualization games which everyone is encouraged to do, so smaller than a /54 for a corporate ISP account seems very questionable; may as well round each site to /48.

There is a high human labor cost to customization even with computer assistance for IPAM. Life is faster, simpler, and more reliable if "every generic ISP connection gets a /48"

At some point, for "IoT" and "security" reasons the concept of one broadcast domain per residential home will go away, hopefully soon. I don't want my soon to be exploited smart TV to have any access to my "real" VLAN, for example. My "home" and "home-guest" wifi networks should be on separate VLANs on separate /64 address blocks.