[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: προσπάθεια σύνδεσης με IPv6



On 02/25/10 22:20, Γιώργος Πάλλας wrote:

Kάνοντας ένα strace το telnet, βλέπω ότι πρώτα γίνεται μια προ-σύνδεση
και στην ipv4 και στην ipv6:


To geniko problhma - kai h apotyxia - me to IPv6 einai oti *kaneis den fainetai na kserei ti akribws na kanei mazi tou*.

Oi end-users den to zhtane giati den kseroun kan ti einai - apla 8eloun Inderwebs.

Oi ISPs den to parexoun epeidh den einai mhdeniko to leitourgiko kostos tou na synthreis ena dual-protocol network pou oi end users sou den to zhtane.

Eksalloy 8ewroun oti exoun oikonomiko symferon apo to IP address scarcity. Otan tous teleiwsoun ta blocks pou exoun dia8esima gia tous pelates tous kai kapoios arnh8ei na tous dwsei perissotera, tote apla 8'arxisoun na rixnoun pelates pisw apo NAT kai tous tsoubaliazoun san ta gidia pisw apo to xwro pou exoun hdh dia8esimo. Ean zhthseis outside-reachable IP, 8a thn plhrwseis parapanw. Ean zhthseis kai static IP, 8a thn plhrwseis xrysafi.

Oi service providers den to yposthrizoun epeidh kaneis pote den parapone8hke se kapoion oti h yphresia tou den einai IPv6 reachable.

Oi SOHO router vendors den to yposthrizoun epeidh den blepoun to logo na pros8esoun functionality pou kaneis den zhtaei kai kaneis den prosferei, kai osoi 8eloun kseroun arketa gia na to kanoyn ki apo monoi tous. Ase pou den kseroun ti na kanoyn by default me NAT kai firewalling (exete dei pote firewall actually configured gia IPv6 traffic? Egw oxi akoma).

Oi application vendors den to yposthrizoun epeidh apaitei allages sto application layer pou den einai akribws trivial, kai ginontai antilhptes ws major kopos gia minor ofelh.

Mesa sthn anampoumpoula bebaia, aytos pou 8a xarei, 8a'nai o lykos. To xeirotero senario problepei molis arxisoun perissotera end-hosts na einai IPv6 reachable me default-accept firewall policies, oi malware/virus/trojan writers 8a broun mia or8anoixth trypa pio megalh ki apo to bleeeep ths bleeeeeep tous, apo thn opoia mporei na perasei traffic to opoio spaniotata ginetai inspect. Ennoeitai oti de 8a xasoun thn eykairia. Opote ksafnika to IPv6 traffic 8a arxisei na 8ewreitai aytomatws malicious, kai olo to ypoloipo sympan 8a kanei backfire mplokarontas to teleiws (h eykolh lush). Kai gamw ta senaria. Prepei na to kanw tainia.


Reply to: