#19772: Firewall drops incoming 6rd packets
------------------------+------------------------
  Reporter:  jlode90@…  |      Owner:  developers
      Type:  defect     |     Status:  closed
  Priority:  normal     |  Milestone:
 Component:  packages   |    Version:  Trunk
Resolution:  not_a_bug  |   Keywords:
------------------------+------------------------

Comment (by jlode90@…):

 In my case I have a server running, with a port opened for the IPv6
 server. I added a rule to the ip6tables forward chain; how do you reckon I
 should configure my firewall to open ports for a IPv6 host?

 To me it sounds really weird that anyone would do conntracking on SIT
 packets. I think it makes more sense to accept all SIT packets, and then
 filter the resulting IPv6 packets. Though I haven't considered if there
 are any security issues with this approach.

--
Ticket URL: <https://dev.openwrt.org/ticket/19772#comment:3>
OpenWrt <http://openwrt.org>
Opensource Wireless Router Technology
_______________________________________________
openwrt-tickets mailing list
[email protected]
https://lists.openwrt.org/cgi-bin/mailman/listinfo/openwrt-tickets

Reply via email to