|
> IPv4 NAT allows people to have quite weak security internally in a network, and not get compromised DENY from ANY to ANY
on the WAN port works with both IPv4 and IPv6 and allows people to have a strong security internally in the network.Here, one simple solution, works on both IP versions, does not rely on NAT or hoping everything would be fine. > How many of those addresses have SSH, Samba, APFS, Telnet, or a DNS server running? Ah, yes, some idiots have the telnet and APFS running and open to the whole world that's why NAT to the rescue! Instead of, you know, having a brain and, at least, firewalling. At The Router. You all NAT apologists somehow do have the router with NAT and firewall for IPv4, but at the same time there is only luminiferous æther for IPv6 with nothing between the poor, young and defenseless IoT device and the 3vi1 h4x0r somewhere on the other side of the planet. Come on. > What if someone gets the logs of an IOT cloud provider with IPv6 enabled IOT devices? What if someone gets in your house and find your nudes? Should we ban cameras everywhere, because someone might do that? |