[ndbug] PF question - is it reasonable to block all IPv6 traffic

Hrishikesh Murukkathampoondi hrishim at gmail.com
Fri Dec 23 05:30:46 PST 2016


Hi 

Another PF question. A sample pf.conf file (from BSDnow I think) recommends blocking IPv6. If my machine has an IPv4 address only is it reasonable have pf block all traffic in and out?

# Block all IPV6 traffic
block in quick inet6 all
block out quick inet6 all

The machine is a Digital Ocean Droplet with a static IPv4 address


Thanks
Hrishi


More information about the talk mailing list