20 Dec
2022
20 Dec
'22
01:06
On 2022-12-19 18:26, David C. Rankin wrote:
For openSUSE, I've been more than happy with firewalld that comes with the distro. For servers on Arch I just use plain IP-tables. There are tools that automate adding an removing entries from IP-tables like fail2ban, and other firewalls that use IP-tables like shorewall.
Unless there have been significant changes, it's unusable for IPv6. Most ISPs use DHCPv6-PD to assign a prefix to the users. I get a /56, which provides 2^72 addresses. I switched to pfSense solely for that reason. Prior to my ISP providing IPv6, I obtained it with a 6in4 tunnel, which did work well with SUSE.