mapping public to private IPv6 networks when firewalling

Cameron Byrne cb.list6 at gmail.com
Wed Nov 23 22:39:11 CET 2011


On Nov 23, 2011 1:23 PM, "Eugen Leitl" <eugen at leitl.org> wrote:
>
>
> The SOP for firewalling in IPv4 is to use
> private (RFC 1918) networks and map external public
> networks 1:1 to them. The idea is that defaults to
> unreachable systems in case of firewall failure.
>
> What's the address space to use in IPv6 for such
> purposes? Is fc00::/7 (RFC 4193) unroutable on
> the public Internet in the same way as RFC 1918
> addresses?
>

Answering your specific question, yes.

Cb
> --
> Eugen* Leitl <a href="http://leitl.org">leitl</a> http://leitl.org
> ______________________________________________________________
> ICBM: 48.07100, 11.36820 http://www.ativel.com http://postbiota.org
> 8B29F6BE: 099D 78BA 2FD3 B014 B08A  7779 75B0 2443 8B29 F6BE
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.cluenet.de/pipermail/ipv6-ops/attachments/20111123/75dd1ea5/attachment.html 


More information about the ipv6-ops mailing list