The Belfry
  • Communities
  • Create Post
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
qaz@lemmy.world to Programmer Humor@programming.devEnglish · 5 天前

We don't talk about IPv5

lemmy.world

message-square
199
fedilink
905

We don't talk about IPv5

lemmy.world

qaz@lemmy.world to Programmer Humor@programming.devEnglish · 5 天前
message-square
199
fedilink
  • Nightwatch Admin@feddit.nl
    link
    fedilink
    arrow-up
    26
    arrow-down
    10
    ·
    5 天前

    It’s vulnerable af. And I mean really, it’s as bad as Netscalers or Fortigate shit. Like https://www.bleepingcomputer.com/news/security/hackers-abuse-ipv6-networking-feature-to-hijack-software-updates/ or https://www.bleepingcomputer.com/news/security/hackers-abuse-ipv6-networking-feature-to-hijack-software-updates/

    Problem is, yes it’s hard to implement but it’s even a lot harder to get it properly secured. Especially because few people are using it, and not securing it is worse than disabling it.

    • Lena@gregtech.eu
      link
      fedilink
      English
      arrow-up
      29
      ·
      5 天前

      Just a heads up, you linked to the same article twice

      • Fuck u/spez@sh.itjust.works
        link
        fedilink
        English
        arrow-up
        33
        ·
        4 天前

        Clipboards are also hard

      • Nightwatch Admin@feddit.nl
        link
        fedilink
        arrow-up
        6
        ·
        4 天前

        That’s odd, but truly sorry.

    • NuXCOM_90Percent@lemmy.zip
      link
      fedilink
      arrow-up
      22
      ·
      5 天前

      And I would consider a detailed argument on why it is more secure to disable it to be a good reason.

      Personally? I consider an IT team who don’t know how to secure an ipv6 enabled network to not be competent. But that is a different conversation.

      • Nightwatch Admin@feddit.nl
        link
        fedilink
        arrow-up
        11
        ·
        5 天前

        Yeah, I run dual stack without much trouble myself. I believe it is mainly difficult for people because eyeball diagnostics are impossible with 6.

      • TexasDrunk@lemmy.world
        link
        fedilink
        arrow-up
        7
        ·
        4 天前

        My detailed explanation at my old job is that the dev team was full of idiots who hardcoded ipv4 addresses into their fucking code. Seriously. When we migrated from data center to cloud they had to go patch everything. The CTO wouldn’t do shit about it and the director was just there riding things out until retirement.

      • StarlightDust@lemmy.blahaj.zone
        link
        fedilink
        arrow-up
        1
        ·
        4 天前

        It has less eyes on it due to it being less popular. It also introduces an extra vector of attack.

        • Auli@lemmy.ca
          link
          fedilink
          English
          arrow-up
          2
          ·
          4 天前

          It does not have less eyes on and it’s 50% of Google traffic.

          • jj4211@lemmy.world
            link
            fedilink
            arrow-up
            2
            ·
            3 天前

            Think they mean local networks.

            If an IT department carefully curates IPv4 but ignores IPv6, then a rogue actor can set up a parallel IPv6 network largely without being noticed.

            IPv6 can be managed, just that it is a blindside for a lot of these departments.

    • Auli@lemmy.ca
      link
      fedilink
      English
      arrow-up
      4
      ·
      4 天前

      Don’t see how that is anymore vulnerable then up 4.

    • jj4211@lemmy.world
      link
      fedilink
      arrow-up
      2
      ·
      3 天前

      But you could do the same thing with a rogue DHCP server I IPv4… With similar methods to prevent the misbehavior on networks

Programmer Humor@programming.dev

programmer_humor@programming.dev

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !programmer_humor@programming.dev

Welcome to Programmer Humor!

This is a place where you can post jokes, memes, humor, etc. related to programming!

For sharing awful code theres also Programming Horror.

Rules

  • Keep content in english
  • No advertisements
  • Posts must be related to programming or programmer topics
Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 1.82K users / day
  • 4.59K users / week
  • 8K users / month
  • 20K users / 6 months
  • 1 local subscriber
  • 25.5K subscribers
  • 1.49K Posts
  • 35.3K Comments
  • Modlog
  • mods:
  • Feyter@programming.dev
  • adr1an@programming.dev
  • BurningTurtle@programming.dev
  • Pierre-Yves Lapersonne@programming.dev
  • BE: 0.19.5
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org