Re: [fw-wiz] proxy firewalls -vs- packet filters

On Thu, Apr 28, 2011 at 07:36:31PM -0400, Marcus J. Ranum wrote:
Bennett Todd wrote:
Probably a naive question, but is there any possibility ipv6 might
tear open a gap in the range of available firewall products that
user-space application layer proxy firewalls could fill faster than
the heuristics for packet filtering can run over enough toes to
discover the necessary subtlties?

Probably a snarky answer, but I thought that when the switchover
to iPv6 happens, nobody'll need firewalls anymore.

Presumably the reason why so many of the firewall venders are thinking
ahead, and not bothering to support IPv6. Who could possibly need that?

Graham Allan
School of Physics and Astronomy - University of Minnesota
