Isn't that what the MAC filtering is for? I don't see the point of stopping a single registered MAC on a single port from having multiple IPs.
Isn't that what the MAC filtering is for? I don't see the point of stopping a single registered MAC on a single port from having multiple IPs.
(If I had to guess, just letting any machine have a million new IPs for the firewall to track has its own issues, so you'd end up with policies upon policies.)
In any case, sometimes middleboxes just don't behave precisely how we want them to, and that's why I'm skeptical of the typical IPv6 position of "a flat /64 network (or something emulating one) is all you'll ever need".
And sure a million IPs could cause problems, but that's not a good reason to set the limit to 1.
> I'm skeptical of the typical IPv6 position of "a flat /64 network (or something emulating one) is all you'll ever need".
That's not the position. You can have as many networks as you want. Connect them with routers like you would on IPv4.