I am currently looking for an IDS which has 'full' IPv6 support.
IPv6 is growing (althrough sometimes silently) and the worst scenario
would be that it gets the stigma that its the protocol of choice for
malicious wrongdoing since it has become the backdoor into your network.
If we are going to offer customers dual stack IPv4/IPv6 access and there
is no adequate support from the security tools that he/she normally uses
this can easily happen without even noticing, since we lack the tools to
look for this sort of activity.
I have compiled it with the IPv6 option.
How do I tell that IPv6 is working in Bro at all?
I don't see any events for IPv6 generated.