Embrace IPv6 before its too late
hackaday.com
hackaday.com
As IPv4 addresses become more scarce and more people get on IPv6, so more people end up behind IPv4 gateways to reach your IPv4 only service, the greater the chance that they’d be cut off for someone else’s bad behavior.
It seems to me, that everybody fine with this, and they don’t care. Even without DDoS. Using VPN or just using Apple’s relay can cut you from large parts of the internet.
Sure it is. You block the /64.
The only way to guarantee your server is secure is to never connect it to a network.
Maybe you need to troubleshoot more and confirm it's actually IPv6 and not just your router failing to e.g. establish a PPPoE session for your IPv4 connection.
As much as I want to love it…still more hassle than it’s worth
I have enabled IPv6 for years and my conclusion is that IPv6 is never the problem. People simply never consider whether there is a confounding variable involved, and immediately jump to the conclusion that disabling IPv6 == problem solved.
And yeah also had it on for years. Dunno what changed
My ipv6 was likely misconfigured but I have no idea how to troubleshoot that so now it’s just off
Good for unique address assignments for IoT I suppose, but still seemingly terrible for a user agent.
Rediscovered the GitHub version of the problem recently when setting up some new IPv6-only VMs. They couldn't pull any code from our GitHub repos, making those VMs entirely useless.
Meanwhile, in the real world, the rest of us use nat64 proxies, take advantage of git's decentralised model etc. etc.
Wow. Sounds like someone got out of bed on the wrong side today. ;)
I have 4-5 several fixed IPv4 addresses and they're inexpensive compared to the hassle of using IPv6.