Why does my team disable IPv6 on workstations?

The “issues” you list are no fault of IPv6.

connectivity enabled between PCs in the network

Sorry, does your firewall not filter traffic between hosts? Or has your team just not written rules to cover IPv6 yet?

posing as a DNS server

Sorry, do you just allow clients to query any DNS server? What about IPv4 prevents an attacker from posing as a DNS server? Or again, have you just not written rules to secure your endpoints

authenticate against a DC

again, this has nothing to do with IPv6, and everything to do with a team who just doesn’t want to enable current technology and leave legacy tech in place because it’s easier.

Plenty of orgs run IPv6 internally and externally, and it’s absolutely possible to do securely and properly. IPv6 is an addressing protocol, same as IPv4. When people stop being scared of 128-bit addresses, the world will be a better place.

/r/sysadmin Thread Parent