[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

回覆: Re: Ipv6 firewall in Sarge - iptabl e?=



Dear Jeremy :

I have played with Firewall builder (for Sarge) for
Ipv4 before. 

It is a very good apps to build Iptable rules and
scripts.

Although Ipv6 is not going to be main stream on
interent with in near futher ( compare with Ipv4), it
will be important to have some good apps (like
Firewall Builder)to help us to test the Ipv6 before
the real depolyment.

Especially for Debian, Debain Offical Package used to
be avaiable late and there are not too much
firewall-apps choices avaiable in Debian Package.

Anyone who are interesting on Ipv6 should give a help
to start making requests for IPv6 support for any
firewall-apps. 

This will help the promotion for Ipv6 as well. Without
a firewall for Ipv6 , I do not see any real deployment
will happen for security concern.

This is my view. 

Best regards,
K. M. Lau

--- "Jeremy T. Bouse" <jbouse@debian.org> 說:

> I would second the information added by Dominic
> regarding the ip6tables
> command.
> 
> I'm the maintainer of Firewall Builder (fwbuilder)
> which currently does
> not support IPv6, but I have been corresponding with
> upstream for
> several years now about adding the support and he
> has said he will
> address it when there is demand for it. I currently
> know of no IPv6
> firewall utilities currently available.
> 
> You can find out more about fwbuilder at
> http://www.fwbuilder.org and if
> more people than me start making requests for IPv6
> support maybe it will
> become a reality sooner rather than later.
> 
> Regards,
> Jeremy
> 
> kmlhk79-ipv6@yahoo.com.hk wrote:
> 
> >Dear All :
> >
> >I have set up my Ipv6 over Ipv4 tunnel to Freenet6
> .
> >
> >Here is my setting :
> >
> > Freenet6 <--> Tunnel broker <--> My gateway PC
> <-->
> >My Ip6 testing LAN
> >
> >All Pc are running Debian Sarge.
> >
> >After running radvd in the tunnel gateway PC , it
> >automatically assigned Ipv6 global address to all
> my
> >internel network host ( that is good ). But it also
> >open the door to Ipv6 internet to access my
> internel
> >network host . ( that is bad ) .
> >
> >I had running iptable on the tunnel gateway PC  for
> >Ipv4. It give protection for Ipv4 network not Ipv6.
> >
> >So, I need to set up a Ipv6 firewall in the Tunnel
> >Gatway PC.
> >
> >Here is my questions :
> >
> >1. Does the Debian Sarge Iptable also work for Ipv6
> ?
> >
> >2. If it does, what command line I need to add in
> to
> >the script file for my case ? 
> >
> >(My case is simple , My LAN host can access IPv6
> >Internet via Tunnel gateway PC, but outsider can
> not
> >get in to my LAN.)
> >
> >3. Can I add Ipv6 firewall rules into the same
> Iptable
> >script file which is working for Ipv4 currently ?
> >
> >4. I heard the name "ip6wall", an iptable firwall
> for
> >ipv6. 
> >
> >However I can not found it in the Debian package
> list.
> >
> >
> >Any idea on ip6wall ? 
> >
> >Looking for any help on this.
> >
> >K. M. Lau
> >
> > 
> >
> >
> >_______________________________________
> > 想即時收到新 email 通知?
> > 下載 Yahoo! Messenger
> http://messenger.yahoo.com.hk 
> >
> >
> >  
> >
> 
> 
> -- 
> To UNSUBSCRIBE, email to
> debian-ipv6-REQUEST@lists.debian.org
> with a subject of "unsubscribe". Trouble? Contact
> listmaster@lists.debian.org
> 
> 


_______________________________________
 想即時收到新 email 通知?
 下載 Yahoo! Messenger http://messenger.yahoo.com.hk 



Reply to: