Linux networking tip: if your box is on a fixed network, always set net.ipv6.conf.forwarding=1. "Forwarding" is a misnomer; it means "is not a dynamic host" and is needed to suppress ability for malicious peers on lan to reconfigure your interfaces & routing.
-
-
Replying to @RichFelker
The differences in how ipv6 works is not well understood by many, including me. Can you provide a source link for this? This link seems to say the opposite.https://www.tachyondynamics.com/ipv6-security-server-operating-systems/ …
1 reply 0 retweets 0 likes
Replying to @mabraFoo
Read kernel's Documentation/networking/ip-sysctl.txt. You can turn off accept_ra etc. manually but forwarding fixes all the defaults from what I can tell.
10:15 AM - 6 Apr 2018
0 replies
0 retweets
1 like
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.