
|
Summary IPv6 firewall activity light (but so is traffic level) Probing activity targeted at ‘advertised’ IPv6 addresses IPv6 IDS seeing IPv4-like attacks But we’re only looking at the application not the IP layer And no way to do IPS messaging over IPv6 yet Need to consider how firewalls can be consistently managed for dual-stack IPv4/IPv6 nodes Need to discuss IPv6-specific IDS considerations Testing new Snort version soon Seeking people to help start an ID on this topic… |