To stay updated on your favorite discussions, please create an account or log in. Then, click the Bookmark icon to subscribe and receive notifications.

Block IPv6 settings from within Policy Manager?

iorx
iorx Posts: 3 Security Scout

Hi!

 

Can't find to controll this setting from within Policy Manager. Where do I find it? Possible?

2018-08-09_14-21-33.png

Comments

  • iorx
    iorx Posts: 3 Security Scout

    Thank you for the swift response. Thats the one.

     

    I started receiveing a lot of "IPv6 small data gram ..." on some client machines. Haven't isolated the cause yet, but may be related to tethering and iPhone. Better safe than sorry, so blocking IPv6 until I can figure out why this all of a sudden has shown up.

     

    Brgs,

  • MJ-perComp
    MJ-perComp Posts: 669 Firewall Master

    Blocking V6 on the client is quick but dirty. It is like having two doors (V4 and V6) and only one (v4) with a propper guard, because you don't want to pay that second guard as noone is using that V6-door anyway.

     

    Now eveyone finds out there is a second door (v6) and you decide to place a signpost "No Entry, No Exit".


    So either configure it propperly or disable V6 in networking. Otherwise you will run into more trouble sooner or later. Using an unconfigured IPV6 is like setting up a Windows domain on 169.xxx.xxx.xxx/8
    with no DNS or DHCP.

  • iorx
    iorx Posts: 3 Security Scout

    I second that.

    IPv6 is properly configured at the Office LAN and remote offices, but outside that you've lost control. I suspect that tethering and the cell provider has implemented IPv6 recently.

    I'm working on build proper rules for the IPv6 in F-Secure and will test to release the total IPv6 block when done with that.

This discussion has been closed.

Categories