• Avatar_of_Self@lemmy.world
    link
    fedilink
    English
    arrow-up
    0
    ·
    1 year ago

    You’d better hope that you can NAT ipv6 because if you aren’t behind a CGNAT and then your LAN is completely exposed without a NAT you’re very likely going to have devices exploited.

    NATs on people’s boundary has been doing pretty much all of the heavy lifting for everyone’s security at home.

    • orangeboats@lemmy.world
      link
      fedilink
      arrow-up
      0
      ·
      1 year ago

      The word you are looking for is firewall not NAT.

      NAT does not provide security whatsoever. If the NAT mapped your (internal IP, internal port) to a certain (external IP, external port) and you do not have a firewall enabled, everyone can reach your device by simply connecting to that (external IP, external port).

      I haven’t seen routers that do not come with IPv6 firewalls enabled by default.