> On Monday 25 February 2008, Drag Sidious wrote:
> > soo.. I hope I got this correct; a router that supports 6to4 would allow
> > me to make a internal ipv6 network accessable from the ipv6-enabled
> > internet through a single ipv4 address?\
> Or, more accurately, 6to4 just defines that packets sent to
> 2002:aabb:ccdd::/48 are to be routed via simple v4 encapsulation to
> aaa.bbb.ccc.ddd using the BGP-best route.
> Your router would simply need to recognize these and be told where to
> route
> them.
> > Of course if I make a ipv6 only internal network I'd have to also setup
> > my router to do translation from ipv6 to it's single ipv4 address.
> > Something like that.
> There are custom DNS and proxies to allow v6-only type things.
> Unfortunately, I use Linksys PAP2-NA, which has proprietary v4-only
> firmware,
> not to mention Asterisk which is still v4-only. :(
My hesitation with IPv6 is i like the simple security inherent in NAT.  For
one, i don't have to worry so much about how the firewall is configured on
each individual machine.  It would be way to easy to turn this on at the
firewall and forget the IPv6 interface attack vector.

