We are running a lot of IPv6 only clusters and don't have any issues. The key solution is to have a NAT64 gateway somewhere at the edge.
HN user
telmich
To be fair, it really isn't designed to rely on one server. And if you don't want to run your own, you can always have someone host the server for you.
Let me rephrase: the whole article is equally valid for IPv4. Being more or less strict is a claim the article makes without proof. And as far as my experience goes, there is no difference.
So standing by it: the article has nothing to do with IPv6 per se.
The article has nothing to do with IPv6.
thanks for the feedback, I'll tune the sound quality for the next episode
Just a heads up: we have just launched the 1000eyes project on https://1000ey.es that tries to give you ready-to-use Open Source and IPv6 enabled cameras without any configuration needed.
That is correct, CHF prices are more or less the same as USD nowadays.
In case it matters for you: Compared to DO this service is running on a zero carbon infrastructure and your IP address is located in Switzerland.
I doubt that this is true. Given the amount of advantages you have from learning in the Internet and avoiding mistakes locally.
There is no business model behind has-a.name. It's main motivation came from our customers, who are using the IPv6VPN quite intensive.
Many of our customers are app developers (ruby, python, clojure, you name it) and they develop on their notebooks that are IPv6 enabled (usually a /64 or /48 per device).
To be able to share in-development state with other remote developers, the common thing to do would be to pass around a http://[2a0a:e5c0:...] url that was http only.
This is not only cumbersome (no one likes to type square brackets), but also potentially risky, as there is no MITM protection whatsoever.
To fix this problem we created has-a.name, because customers/developers now go ahead and just create a docker container and share it as https://2a0a-e5c0-...has-a.name with their co-developers.
Because our whole company consists of a bunch of Open Source Hackers we decided to make it public to allow others work around the same problem.
Even though we promise to never change the automatic resolution (that's work, doesn't make sense to do that for us), you don't have to trust has-a.name. You can register your own domain and replicate our setup and use your domain instead.
I hope that clarifies a bit the business model question.
While that is true, you can still fully run your network IPv6 only. At the border router, you can simply use NAT64 to reach the IPv6 Internet.
Indeed, you can do that. I am actually doing that at various places at the moment. If you want to discuss how to do it, you can reach me directly on https://IPv6.chat
That was a really bad miscommunication - especially as we are running out of IPv4 in Europe this month. - see https://ungleich.ch/u/blog/when-does-ripe-run-out-of-ipv4-ad...
With a wireguard based IPv6 VPN for example. It's exactly what you can get on IPv6VPN.ch
Got your point - thanks for clarification!
Actually yacy goes this direction: https://yacy.net/
Because I'm not always online and you might not be when I'm.
That's a good thing, because maybe I don't want to be able to reached all the time. If you want to, you can add your IPv6 address on your phone, which is virtually always online (I actually do this on my phone).
I would say if you assume that markets don't regulate themselves to the best, the argument that users should not care, is not valid.
Or put it the other way: if users don't care, they will be exposed to changes / forces they don't control nor want.
I think this is very similar to political activity: if you don't vote, your life will be more influenced by the opinions of others.
If you vote (care), then you can make a change
Love the challenge. Let me start by replying to your DMZ comment: with IPv6, you actually have to rethink and with it you can organise the Internet very different from today.
I agree with you that people don't want to maintain complex systems. But then again, running a git server or even cgit, is a matter of little minutes spent, especially if you use ready to deploy toolchains.
I also think you have a point in terms of equilibrium - people are in general more comfortable with something they know. And due to the long history of IPv4 shortage, people are used to having private IPv4 space only.
It is like animals in a zoo - we don't know anymore, how good the life used to be with public IPv4 addresses, we have grown up without them.
What I have seen from many discussions and visits in the last months is that IT startups are now reconsidering and embracing IPv6, because it gives freedom.
I'd also say the approach is not to directly replace facebook & co., but to think completely different. Why do I need a website to write to you? I can write directly to you, if both of us are on an IPv6 network.
Thinking different is the key for decentralisation.
So, how does a DNS entry to 10.0.2.2 help to be reachable?
The difference is, you can take any ISP and continue your business. 1, 2, 3 or even move somewhere else.
It doesn't prevent them, but with IPv6 everyone can take back control. With IPv4, you are unable to get a decent amount of public addresses to run your service (if you are not having tons of money already).
... and updated.
Very nice one - thanks for the pointer, I'll even add it to the blog!
Does HE work behind CGNAT?
It's not much, but it is pretty well livable. Have done that quite some time in my life
Happy to see someone understands the real problem here!
That is not an argument, it is clear that this is supposed to be deployed by default.
I think in most countries, government can approach domestic companies to hand over data in case of illegal action.
The problem with the US is that data is being used against you, like recent events have shown.
It will actually not be used anymore, because firefox avoids your local DoH setup.
It's worse, because the local ISP is more trustworthy and additionally you enable cloudflare for large scale profiling. And don't claim they won't do it, it's just a matter of time