[171069] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Requirements for IPv6 Firewalls

daemon@ATHENA.MIT.EDU (Sander Steffann)
Thu Apr 17 12:56:05 2014

From: Sander Steffann <sander@steffann.nl>
In-Reply-To: <CAP-guGV-NJEUaSRJPVfNGtdar5ABRkjEbEpqsaDU2Vq0B=rEBQ@mail.gmail.com>
Date: Thu, 17 Apr 2014 18:55:24 +0200
To: William Herrin <bill@herrin.us>
Cc: NANOG <nanog@nanog.org>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org

Hi Bill,

> Also, I note your draft is entitled "Requirements for IPv6 Enterprise
> Firewalls." Frankly, no "enterprise" firewall will be taken seriously
> without address-overloaded NAT. I realize that's a controversial
> statement in the IPv6 world but until you get past it you're basically
> wasting your time on a document which won't be useful to industry.

I disagree. While there certainly will be organisations that want such a =
'feature' it is certainly not a requirement for every (I hope most, but =
I might be optimistic) enterprises.

Cheers,
Sander



home help back first fref pref prev next nref lref last post