|
BugTraq
Bypassing ISA Server 2004 with IPv6 Apr 03 2006 03:08PM Romain Le Guen romainl com (1 replies) Re: Bypassing ISA Server 2004 with IPv6 Apr 04 2006 12:40PM 3APA3A (3APA3A SECURITY NNOV RU) (2 replies) |
|
Privacy Statement |
> Dear Romain.Le.Guen (at) romainl (dot) com [email concealed],
>
> Neither ISA Server 2004 nor Windows 2003 Basic Firewall support IPv6
> filtering, IPX filtering, etc. This is different network protocol.
That's no excuse for letting IPv6 packets pass the firewall.
If I understand correctly this means that the internal LAN
is open for any attacks as long as they are IPv6 based. If that
is right, this is an extremly nasty bug. If ISA Server 2004
and Windows 2003 Basic Firewall cannot filter that stuff it
should simply drop it.
Cheers,
Chris Kronberg.
[ reply ]