Home
Calendar
Certifications
Columns
Features
Forum
Resources
Vitals
Latest Additions
April 2013 Free Giveaway Sponsor - eLearnSecurity
Human Intelligence to Navigate the Security Data Deluge
February 2013 Free Giveaway Winner of SANS CyberCon Training
Interview: Bugcrowd Founders on Herding Ninjas for Crowdsourced Bug Bounties
Network Forensics: The Tree in the Forest
March 2013 Free Giveaway Sponsor - Mile2
Book Review: Violent Python
February 2013 Free Giveaway Sponsor - SANS
Holiday 2012 Free Giveaway Winner of Metasploit Pro by Rapid7
Course Review: SANS FOR408 Computer Forensic Investigations – Windows In-Depth
The Security Consulting Sugar High
Tutorial: Fun with SMB on the Command Line
Interview: Ilia Kolochenko, CEO of High-Tech Bridge
October 2012 Free Giveaway Winner of LearningGate Training
The Broken: Assessing Corporate Security in 2012 to Make a Better 2013
EH-Net Login
Welcome Guest.
Username:
Password:
Remember me
Lost Password?
No account yet?
Register
Who's Online
We have 68 guests online
You are here:
Home
Ethical Hacking Discussions and Related Certifications
Network Pen Testing
IPv6
EH-Net
May 24, 2013, 10:55:39 PM
Welcome,
Guest
. Please
login
or
register
.
Did you miss your
activation email?
1 Hour
1 Day
1 Week
1 Month
Forever
Login with username, password and session length
News
: Go back to The Ethical Hacker Network Online Magazine
Home Page
Home
Help
Calendar
Login
Register
EH-Net
>
Ethical Hacking Discussions and Related Certifications
>
Network Pen Testing
(Moderator:
don
) >
IPv6
Pages: [
1
]
2
Go Down
« previous
next »
Print
Author
Topic: IPv6 (Read 7882 times)
0 Members and 1 Guest are viewing this topic.
teedge77
Newbie
Offline
Posts: 9
IPv6
«
on:
June 06, 2008, 03:29:11 PM »
Hello everyone, this is my first post and hopefully people will be able to excuse what may be a slightly vague question. With IPv6 coming out in the not TERRIBLY distant future....well....being more widely used I suppose is what I really mean. How is that going to change the current security work? What I am trying to get to is...will all tools have to be redone with support? Are there tools that already have updated to support IPv6? Will people who just learned TCP/IP need to go back to the drawing board and learn v6 now or will it be like updating your MCSE from 2000 to 2003, and you just need to recap on the new stuff? How does 6 differ from 4 as far as the OSI model, in the sense of pen testing? Unless you have the 4 stuffed inside the 6, then 4 and 6 arent gonna play nice, right? Well...this has become more vague, incoherent and out of the scope of "Ethical Hacking" and more into "Networking" so I will quit. First post....cut me a little slack.
«
Last Edit: June 06, 2008, 03:37:53 PM by teedge77
»
Logged
oneeyedcarmen
Full Member
Offline
Posts: 233
Klaatu, Borada,Necktie?
Re: IPv6
«
Reply #1 on:
June 06, 2008, 03:33:33 PM »
Just speaking for myself, I don't think you NEED any slack. Pretty damned good questions that I had wondered about myself.
Welcome to the neighborhood. Grab a beer.
Logged
Reluctant CISSP, Certified ASS
don
Editor-In-Chief
Administrator
Hero Member
Offline
Posts: 4169
Editor-In-Chief
Re: IPv6
«
Reply #2 on:
June 06, 2008, 03:40:33 PM »
Now that's a good first post. Welcome to EH-Net.
First of all, try this:
http://www.ipv6.org
You can also try these posts on EH-Net:
-
IPv6: Ready or Not
-
IPv6 Guru Predicts Last-Minute Switch to Protocol
Since most people who recommend that if you want a career in networking or security, start with learning the ins and outs of TCP/IP, learning IPv6 now can only help you be fully prepared when the time comes. That also makes you more valuable to employers.
Hope this helps,
Don
«
Last Edit: June 06, 2008, 03:55:10 PM by don
»
Logged
CISSP, MCSE, CSTA, Security+ SME
teedge77
Newbie
Offline
Posts: 9
Re: IPv6
«
Reply #3 on:
June 06, 2008, 03:47:06 PM »
Ha....yeah...I have seen the "tastes great, less filling" post.
I watched some interesting videos by Google on the topic of IPv6 and the changeover. I will try to post the link for anyone that is interested...if anyone is.
http://www.youtube.com/watch?v=mZo69JQoLb8
There is one, but there are many more if you just search Google and IPv6 (or just IPv6).
Does anyone know of any tools that are already able to take advantage of IPv6?
Logged
g00d_4sh
Sr. Member
Offline
Posts: 394
Re: IPv6
«
Reply #4 on:
June 06, 2008, 04:09:08 PM »
IPv6 is so sparcely implimented I don't think it's a big issue just yet. Even for us who were REQUIRED to 'update to IPv6'... we're only doing the boarder routers. And even with that, we're still keeping IPv4 throughout all of our inner workings. NAT has really slown the push for IPv6, even with all the hype. What I'm more interested in, is whether people plan to Winblows autonegotiated IPv6, or DHCPv6 with set ranges. I know personally for sanity and being able to keep a decent idea of whats on the network, I'm leaning toward the latter. I had a teacher once tell me that Hex is easier to read than binary... I respectfully disagree.
I had to show them that I could convert far faster to decimal.. going Hex to Binary, to Decimal... than their convoluted path of Hex to Decimal. All I have to say for the future, is thank God we have cut and paste... because remembering an IPv6 addy will be a pain in the arse.
Logged
"Bad.. Good? I'm the guy with the gun"
tbone
Newbie
Offline
Posts: 1
Re: IPv6
«
Reply #5 on:
June 06, 2008, 06:08:47 PM »
I really think that converting to the IPV6 is something that is way off in the future and the mathmatical requirement forcing the change will be reached slower then expected or hoped by those that are pushing for V6, I am sure that it's rooted in the groups that think HEX is fun...
Logged
LSOChris
Guest
Re: IPv6
«
Reply #6 on:
June 08, 2008, 09:17:10 PM »
it depends on where you live. some countries like japan are in full IPv6 force. US, not so much but its coming. to answer the first question alot of tools have to be rewritten but there are some that are compatible.
I caught a talk by Joe Klein at NoVA Sec on IPv6 and there are plenty of pretty cool network vulnerabilities in IPv6 so its worth learning. You might get lucky and catch some people running it on their LAN and be able to use it to your advantage.
Logged
don
Editor-In-Chief
Administrator
Hero Member
Offline
Posts: 4169
Editor-In-Chief
Re: IPv6
«
Reply #7 on:
June 17, 2008, 10:44:00 PM »
As of 2008-6-1, Nmap v4.65 now supports IPv6 on Windows.
http://nmap.org/changelog.html
Don
Logged
CISSP, MCSE, CSTA, Security+ SME
divine
Newbie
Offline
Posts: 12
Re: IPv6
«
Reply #8 on:
June 18, 2008, 01:22:39 PM »
personal opinon, ready, set, go:
IPv6 is a pain and from strictly a personal perspective I don't think it is necessary to learn it right now, even those who are being forced to change (my company included) are not going to change use anything except IPv4 internally. Honestly, there is no need to change our internal IP space so I don't see it happening anytime soon...
End Personal Opinion...
professional opinion, ready, set go:
Learning New things like IPv6 can do nothing but help prepare you for the future and increase your marketability to future employers, on this one, the career perspective should win out, I am not using nor will I use IPv6 at my current company, however, because I am career minded and more professional then just personal I have learned enough about IPv6 to understand and manage it if necessary. This way if a future employer ever had that requirement... check it off on the list, I am good to go....
end professional opinion:
As you can see their are 2 sides to this argument from everyone's posts you got a little taste of both sides. Take the knowledge that has been shared and do what you think is best for you man
....
Logged
-Jordan
CEPT, CREA, C|EH, MCSE:Security (too many others that I don't care about to list)
Akhenaton
Newbie
Offline
Posts: 2
Re: IPv6
«
Reply #9 on:
June 18, 2008, 02:49:42 PM »
Teedge77,
Excellent question. This is my first reply and I am a new member so, I hope that my disagreeing with some of the other replies will not offend anyone. You are correct IPv6 is here. The Federal Government has been mandated by the Office of Budget and Management to migrate to IPv6 by June 30th 2008. Typically many government agencies won’t make the three year old deadline but, the change has begun.
Now, to your question. It is a question that I am researching myself. What network tools work and which don’t? What are the security implications for applications like VoIP?
It depends on the tool and vendor. Some of the major vendors have had dual stack products for a while. Other vendor tools and tools with lower levels of support may not be ready. Equipment will also be a factor. Services like FTP, at last I knew are not supported in IPv6 on Cisco routers.
There are already a number of hacks advertised for IPv6. I don’t know how well they work or on what types of equipment but we will start to see soon.
The bottom line is for every tool that we use we are going to have to contact the vendor, do some research or test. My hope is that as we identify tools that work and tools that do not we share the information to save the next person some unnecessary headaches.
«
Last Edit: June 18, 2008, 02:52:40 PM by Akhenaton
»
Logged
jason
Hero Member
Offline
Posts: 1012
Re: IPv6
«
Reply #10 on:
June 23, 2008, 03:17:10 PM »
I'm curious to see what happens when NAT (theoretically) goes away. While security through obscurity is not necessarily a good thing, having millions of machines that were previously hidden be directly accessible seems like a bad thing to me.
Logged
LSOChris
Guest
Re: IPv6
«
Reply #11 on:
June 23, 2008, 04:03:54 PM »
well the the issue now becomes finding all those millions of machines. But it does bring up interesting issues. if your security strategy has been that those machines are NAT'ed you may have to come up with something else.
Logged
jason
Hero Member
Offline
Posts: 1012
Re: IPv6
«
Reply #12 on:
June 23, 2008, 04:07:32 PM »
I'm betting that we see some sort of IPv6 NAT workalike,or some sort of similar scheme to hide machines appear as we get close to switching over.
Logged
Akhenaton
Newbie
Offline
Posts: 2
Re: IPv6
«
Reply #13 on:
July 02, 2008, 03:19:31 PM »
There have been claims of tools used for scanning IPv6 networks both from security companies and from crackers. So, finding networks might not be as big a problem as know what you found and where you are and how it relates to your target.
I think the issue of hiding networks will require a number of NAT like systems or network segments based on the type of resource that you are attempting to protect. It could require increased monitoring points along with the usual IDS, Firewalls and AV. Everyone seeing everything might be a bit of a problem.
Logged
g00d_4sh
Sr. Member
Offline
Posts: 394
Re: IPv6
«
Reply #14 on:
July 02, 2008, 07:07:24 PM »
Hey Akhenaton,
You're right about the federal mandate to go to IPV6... other than it only requires boarder routers. Which is all we're doing. I speak at least in regard to the DOI. So, our boarder routers will be IPV6, while all our internal network is still IPV4. With somewhat of a cobbled IPV4 to IPV6 Nat type thing going on. Granted, I'm not the Network Engineer doing it, but that's the word frop the top. It is my suspicion that the rest of the Federal Agencies are going to do that as well.
Logged
"Bad.. Good? I'm the guy with the gun"
Pages: [
1
]
2
Go Up
Print
« previous
next »
Jump to:
Please select a destination:
-----------------------------
EH-Net
-----------------------------
=> Calendar Of Events
===> ChicagoCon 2007
===> ChicagoCon 2008s
===> ChicagoCon 2008f
===> ChicagoCon 2009s
=> Ethical Hacktivism
=> News Items and General Discussion About EH-Net
===> Greetings
=> Special Events
-----------------------------
Ethical Hacking Discussions and Related Certifications
-----------------------------
=> General Certification
===> Networking
===> OS
===> Security
=> Compliance, Regulations & Standards
=> Control Systems
=> Cyber Warfare
=> Forensics
===> CCE / MCCE - (Master) Certified Computer Examiner
===> CHFI - Computer Hacking Forensic Investigator
===> EnCE - EnCase® Certified Examiner
===> GCFA - GIAC Certified Forensics Analyst
=> Hardware
=> Incident Response
===> CSIH - Computer Security Incident Handler
===> GCIH - GIAC Certified Incident Handler
=> Malware
===> Advisories
=> Mobile
=> Network Pen Testing
===> CEH - Certified Ethical Hacker
===> CPTC - Certified Penetration Testing Consultant
===> CPTE - Certified Penetration Testing Engineer
===> CSTA - Certified Security Testing Associate
===> eCPPT - eLearnSecurity Certified Professional Penetration Tester
===> ECSA - EC-Council Certified Security Analyst
===> GPEN - GIAC Certified Penetration Tester
===> OSCP - Offensive Security Certified Professional
=> Physical Security
=> Programming
=> Social Engineering
=> Web Applications
=> Wireless
===> CWNP Certs
===> GAWN - GIAC Assessing Wireless Networks
===> OSWP - Offensive Security Wireless Professional
=> Other
-----------------------------
Columns
-----------------------------
=> Editor-In-Chief
=> Andress
=> Gates
=> Haddix
=> Hadnagy
=> Heffner
=> Hoffman
=> Linn
=> RichM
=> Murray
=> J. Peltier
=> Weidman
=> Wilson
-----------------------------
Features
-----------------------------
=> /root
=> Book Reviews
=> Opinions
=> Skillz
===> Examples
===> May 06 - Star Hacks, Episode V: The Empire Hacks Back
===> July 06 - Hack Bill!
===> Sept 06 - Netcat in the Hat
===> Nov 06 - Hitch-Hackers Guide to the Galaxy
===> Dec 06 - A Christmas (Hacking) Story
===> Feb 07 - Charlottes Web Site
===> April 07 - Microsoft Office Space
===> June 07 - Serenity Hack
===> Oct 07 - Worst. Ethical. Hacker. Challenge. Ever.
===> Dec 07 - Frosty the Snow Crash
===> March 2008 - It Happened One Friday
===> Oct 2008 - Scooby Doo and the Crypto Caper
===> Dec 08 - Santa Claus Is Hacking to Town
===> Feb 2009 - Brady Bunch Boondoggle
===> July 2009 - Prison Break
===> October 2009 - SSHliders
===> December 2009 - Miracle on Thirty-Hack Street
===> December 2010 - The Nightmare Before Charlie Browns Christmas
-----------------------------
Resources
-----------------------------
=> Career Central
===> Looking For Work
===> Looking To Hire
=> Links to cool sites.
=> Mass Media
=> News from the Outside World
=> Tools
=> Tutorials
===> Tutorial Requests
Loading...
Exclusive Deal
SANSFIRE 2013
June 15 - 22
5% Off
w/ Code
:
EHN_5
SANS Deals 4 EH-Netters
5% OFF
Any
SANS Course
in Any Format!
Coupon Code:
EHN_5
Including
SANS Rocky Mountain 2013
&
SANS Boston 2013
Polls
Compared to this year, 2013 will be:
Great!
Better.
About the same.
Little worse.
FUBAR!
Recent Forum Topics
News Items and General Discussion About EH-Net
: Change is Coming to EH-Net!!
(30) by
don
Tools
: Symbolic Exploit Assistant project is looking for collaborators
(0) by
galapag0
Greetings
: Hi from the UK
(5) by
prats84
GCIH - GIAC Certified Incident Handler
: Passed my GCIH
(9) by
prats84
Network Pen Testing
: Want a challenge? Want a GXPN practice exam?
(0) by
ajohnson
GCIH - GIAC Certified Incident Handler
: GCIH Free Practice test attempt
(1) by
prats84
EH-Net News Feeds
Latest Additions
Privacy Notice
for TDCC & All Properties
© 2013 The Ethical Hacker Network
Joomla!
is Free Software released under the GNU/GPL License.