Re: IPv6 supported?

"M. Neri" <[email protected]>
Newsgroups gmane.comp.security.ipcop.user
Message-ID <[email protected]>
I carefully read that paper and, even if I'm not an expert of VPNs, clearly 
it doesn't apply to IPCOP. They only investigated "commercial VPN services" 
that claim to let you surf the web in  privacy and anonymity (and this is 
not what a VPN is used for, it's better to use a service as TOR for that).
Why these commercial VPN services fail in their job? Just because of their 
bad clients that don't check if there's something going wrong on the host 
(modified routing table, etc...), etc... etc... The important thing for you 
is here:

"Differently from the commercial VPN services surveyed in
this paper, an enterprise VPN gives individual employees se-
cure access to their company network. Although enterprise
VPNs might be exposed to these attacks, we argue that their
impact is rather limited compared to commercial VPN ser-
vices. Importantly, in this scenario, access to corporate re-
sources is only possible via the secure tunnel. IPv6 traffic leak-
age is therefore not possible, as connections to the corporate
network outside the VPN tunnel are not allowed (assuming all
configurations are done correctly). Instead, hijacking the DNS
could leak the names of the resources being accessed within
the private enterprise network. However, unless the attacker
has detailed knowledge of the corporate network, the name
resolution will fail, and the user will notice the error and even-
tually stop using the VPN"

By the way, this is not a surprise for me. From what I recall, my prof of 
Cryptography I were always repeating, almost every day: "Never trust a 
commercial software, just use an open source one!".
Regards

Massimiliano

"Administrator" 
<admin-JJaFKVBkT/[email protected]> ha 
scritto nel messaggio 
news:1435924112.3704.2.camel-JJaFKVBkT/[email protected]
> It would be very useful if IPCop acknowledged the existence of IPv6.
> Without that, there seem to be security risks (see
> http://www.eecs.qmul.ac.uk/~hamed/papers/PETS2015VPN.pdf ).
>
> IPCop has VPNs "out of the box."  Do they protect against these
> information leakage issues?
> Can anyone with more understanding of these things comment?
>
> Yours
> David
>
> On Fri, 2015-07-03 at 10:59 +0200, Cyril Alberts wrote:
>
>> Since the NAT-Feature from IPv4 is not portable to IPv6 yet (AFAIK), I
>> hope it does not!
>>
>> IPCop is a security appliance and IPv6 by default is not!
>>
>> Greetings,
>>
>> Cyril
>>
>> On 02.07.2015 20:49, Kanwar Ranbir Sandhu wrote:
>> > Hi Everyone,
>> >
>> > Does IPCop support IPv6? I'm interested in trying it out on my home
>> > network, but I have no idea if ipcop supports it.
>> >
>> > Thanks,
>> >
>> > Ranbir
>> >
>>
> ------------------------------------------------------------------------------
> Don't Limit Your Business. Reach for the Cloud.
> GigeNET's Cloud Solutions provide you with the tools and support that
> you need to offload your IT needs and focus on growing your business.
> Configured For All Businesses. Start Your Cloud Today.
> https://www.gigenetcloud.com/
> _______________________________________________
> IPCop-user mailing list
> [email protected]
> Manage your subscription or unsubscribe
> https://lists.sourceforge.net/lists/listinfo/ipcop-user
> 




------------------------------------------------------------------------------
Don't Limit Your Business. Reach for the Cloud.
GigeNET's Cloud Solutions provide you with the tools and support that
you need to offload your IT needs and focus on growing your business.
Configured For All Businesses. Start Your Cloud Today.
https://www.gigenetcloud.com/
_______________________________________________
IPCop-user mailing list
[email protected]
Manage your subscription or unsubscribe
https://lists.sourceforge.net/lists/listinfo/ipcop-user
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.