4 ms·
> That said, while HTTP/2 is now out, IPv6 is still a sad story, especially with AWS. The problem I see with IPv6 is that it very much encourages a unique, eve
by wfunction 9y ago
> That said, while HTTP/2 is now out, IPv6 is still a sad story, especially with AWS.
The problem I see with IPv6 is that it very much encourages a unique, even static address for each device on your network, which is a privacy and security hole that NAT addresses for IPv4. So I'm not exactly dying to use it if I can avoid it.
- cortesoft 9y agoThat, and firewall support for IPv6 sucks.
- pixl97 9y ago??? On what devices? Home routers, probably. Things with an extensible stack based on bsd or linux, no, they have very good firewalls. Better I would say, since you don't have to deal with NAT crap.
- deleted 9y ago[deleted]
- blibble 9y ago> The problem I see with IPv6 is that it very much encourages a unique, even static address for each device on your network this is what ipv6 privacy addresses[1] are for! they are on by default on Windows, for Linux you need change a sysctl [1]: https://en.wikipedia.org/wiki/IPv6#Privacy https://en.wikipedia.org/wiki/IPv6#Privacy
- johncolanduoni 9y agoThey're the default on OS X as well for recent versions
- tomschlick 9y agoWith a /64 (which is the standard given to residential connections) you could have a new ip address every second for your computer's entire lifetime if you wanted to and still have the majority of the address space on the internal network available.
- aanm1988 9y agoIf you have a properly configured firewall why is it problem? Especially given the massive address space.
- wfunction 9y ago> If you have a properly configured firewall why is it problem? Especially given the massive address space. Privacy? Security? Do you really need the whole outside world to know how many computers are on your network, and which one is browsing which sites or doing what exactly at which time? Most people don't, for privacy reasons... and if an attacker can single out a particularly sensitive computer to target, then that becomes a security risk too. If it's avoidable then you avoid it, it's as simple as that. EDIT: I don't understand these random downvotes. The concern actually exists, that's why (as one comment pointed out) people have been proposing privacy extensions to IPv6. What in the world are people downvoting? You don't like reading facts?
- otterley 9y agoYou're likely being down voted due to your attitude. It's one thing to politely argue a position, quite another to ask rhetorical questions as though everyone else is stupid for not knowing the obvious.
- wfunction 9y agoThanks for explaining, but what attitude are you seeing in the first [1] post? In this one I was annoyed at the downvotes on the first one and (later) this one, but what was wrong with the first one? People downvoted it for no reason... this seemed just a continuation of that. [1] https://news.ycombinator.com/item?id=14054811 https://news.ycombinator.com/item?id=14054811
- otterley 9y agoThat post seems fine. I'm not sure why it was downvoted. If it makes you feel any better, some of my comments get downvoted too, especially in the first hour or so. Then over the next 24-48 hours the scores will go up again. The worst thing to do is complain about the downvoting, though, because that pretty much forecloses any chance of recovery.