is your firewall blocking all ipv6?
are you sure?
Conversation
No, but some people are using the network layer as access control and don't understand IPv6 so they block it instead. 🤬🤦
4
2
22
There's some legitimate for host-based firewalls such as avoiding accidental exposed services, determining which applications/services can use the network and access control for services only able to listen on loopback instead of a Unix domain socket.
2
2
A funny part about people using firewalls is that they generally make themselves much more vulnerable to DoS attacks due to overhead and limits on tracked connections.
On Linux, having a single service listening externally with conntrack enabled breaks your SYN flood protection.



