Community discussions

MikroTik App
 
MilenGomes
just joined
Topic Author
Posts: 3
Joined: Wed Jan 20, 2021 4:32 pm

Ipv6 good firewall rules?

Wed Feb 10, 2021 10:15 am

I know my way around RouterOS when it comes to IPv4. But as for most of us, IPv6 is new territory. And I know this should be an easy question for anyone who knows RouterOS... I have come from a 12 hour shift, so, please give me a hand?

So I have given a router a /56 prefix. Everything is set up, works as expected, even DNS goes over IPv6. But now I want to protect the hosts behind the router.
So, my idea is to make firewall rules that allow everything on the /56 prefix to open up new connections towards the outside. But in the reverse direction, the outside can only enter trough already opened connection?

How do I achieve that?

Is this an OKayish IPv6 firewall?
essay writer

Any tips?
Last edited by MilenGomes on Wed Feb 10, 2021 11:53 am, edited 1 time in total.
 
User avatar
Jotne
Forum Guru
Forum Guru
Posts: 1915
Joined: Sat Dec 24, 2016 11:17 am
Location: jo.overland at gmail.com

Re: Ipv6 good firewall rules?

Wed Feb 10, 2021 11:00 am

You have posted this in the script section on the forum so you may not get as many reply as you like.
RB has a set of default rules for ipv6 that works fine.
 
Why do not use Splunk to monitor your MikroTik Router(s)? Look at this page in how to set it up.

MikroTik->Splunk
 
 
DarkNate
Member Candidate
Member Candidate
Posts: 284
Joined: Fri Jun 26, 2020 4:37 pm

Re: Ipv6 good firewall rules?

Wed Feb 10, 2021 11:52 am

I have fully built IPv4 and IPv6 firewall with IETF spec in mind + CPU optimisation.

Check here: viewtopic.php?f=2&t=172360&p=842544#p842544
And here: https://www.reddit.com/r/mikrotik/comme ... rent_ietf/

Who is online

Users browsing this forum: No registered users and 24 guests