If You Can't Secure IPv6. Don't Turn it On.

darthcamaro writes: Lots of hoopla today about World IPv6 Launch day. The day the pundits tells us that we should be switching to IPv6. Well not all pundits, the Chief Security Officer of VeriSign (you know the guys the run the root DNS and .com) doesn't think IPv6 should be turned on by a whole lot of people. The problem is network security devices in many cases don't scan IPv6. So if you turn IPv6 on, you're screwed.
"If you don't have that visibility into IPv6, you should probably consider explicitly disabling IPv6 on your systems until you can take a very concerted approach to enabling IPv6 in a secure manner," McPherson said.

