On Sat, 2012-03-31 at 19:52 +0200, Tilman Schmidt wrote: > Am 31.03.2012 17:37, schrieb Les Mikesell: > > On Sat, Mar 31, 2012 at 8:06 AM, Peter Eckel <lists at eckel-edv.de> wrote: > >> So, before you do anything else, set up proper incoming and outgoing IPv6 port filtering rules on your perimeter routers. It will save you a hell of a headache > > If the addresses are auto-discovered, how are you supposed to be able > > to configure filtering rules for what you want to let through > Same as today: machines which need individual filtering rules need > static addresses. Or you assign the rule to the interface, rather than the address. Nothing new, that is how firewalls work on DHCP clients today. -------------- next part -------------- A non-text attachment was scrubbed... Name: signature.asc Type: application/pgp-signature Size: 198 bytes Desc: This is a digitally signed message part URL: <http://lists.centos.org/pipermail/centos/attachments/20120402/d3e49070/attachment-0005.sig>