#19772: Firewall drops incoming 6rd packets
------------------------+------------------------
Reporter: jlode90@… | Owner: developers
Type: defect | Status: closed
Priority: normal | Milestone:
Component: packages | Version: Trunk
Resolution: not_a_bug | Keywords:
------------------------+------------------------
Comment (by jlode90@…):
In my case I have a server running, with a port opened for the IPv6
server. I added a rule to the ip6tables forward chain; how do you reckon I
should configure my firewall to open ports for a IPv6 host?
To me it sounds really weird that anyone would do conntracking on SIT
packets. I think it makes more sense to accept all SIT packets, and then
filter the resulting IPv6 packets. Though I haven't considered if there
are any security issues with this approach.
--
Ticket URL: <https://dev.openwrt.org/ticket/19772#comment:3>
OpenWrt <http://openwrt.org>
Opensource Wireless Router Technology
_______________________________________________
openwrt-tickets mailing list
[email protected]
https://lists.openwrt.org/cgi-bin/mailman/listinfo/openwrt-tickets