Reply to post: Re: IPv6 is fundamentally broken

Global IPv4 address drought: Seriously, we're done now. We're done

Charles 9

Re: IPv6 is fundamentally broken

NAT isn't what blocks incoming connections. It's your firewall, and any firewall worth its salt has a DROP or REJECT rule for incoming connections by default. Without the firewall, an ISP (perhaps under pressue) can route directly into your LAN. The firewall doesn't go away with IPv6. Nor does NAT; it's just redone as one-to-one reconfigurable and ephemeral NATS which actually provide better protection by scrambling the visible topology.

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon