[Firewall] IPv6 not blocking INET->DMZ or INET->LAN

Jason Stahls jason at justuscare.ca
Tue Mar 11 04:02:04 CET 2014


I've got a server with native v6 and a /48, it's running a OpenVPN 
server for various sites.  I've given each site a /64 and have IPv6 over 
the OpenVPN tunnels working great, but over v6 my hosts are completely 
open.  I've tried putting them in the LAN without NAT, and in the DMZ, 
both cases the remote subnets are completely open to the Internet.  Is 
there a default accept policy I'm missing? :)

Thanks,

Jason Stahls


More information about the Firewall mailing list