7.7. ip6tables

IPv6¶ó°í ºÎ¸£´Â Â÷¼¼´ë ÀÎÅÍ³Ý ÇÁ·ÎÅäÄÝÀÌ µµÀÔµÊÀ¸·Î¼­ IPv4 (IP)ÀÇ 32 ºñÆ® ÁÖ¼Ò Á¦ÇÑÀÌ È®ÀåµÇ¾ú½À´Ï´Ù. IPv6´Â 128 ºñÆ® ÁÖ¼Ò¸¦ Áö¿øÇϸç, IPv6¸¦ ÀνÄÇÏ´Â °øÁß ³×Æ®¿öÅ©´Â IPv4 º¸´Ù ¸¹Àº ´ë·®ÀÇ ¶ó¿ìÆÃ °¡´ÉÇÑ ÁÖ¼Ò¸¦ ÁÖ¼Ò ÁöÁ¤ °¡´ÉÇÕ´Ï´Ù.

Red Hat Enterprise Linux´Â ³ÝÇÊÅÍ 6 ¼­ºê½Ã½ºÅÛ ¹× ip6tables ¸í·ÉÀ» »ç¿ëÇÏ´Â IPv6 ¹æÈ­º®À» Áö¿øÇÕ´Ï´Ù. ip6tables¸¦ »ç¿ëÇϽ÷Á¸é ¸ÕÀú ´ÙÀ½ ¸í·ÉÀ» ÀÔ·ÂÇÏ¿© ip6tables ¼­ºñ½º¸¦ ½ÃÀÛÇØ¾ß ÇÕ´Ï´Ù:

service ip6tables start

°æ°í°æ°í
 

ip6tables ¼­ºñ½º¸¸ »ç¿ëµÇµµ·Ï iptables ¼­ºñ½º¸¦ ²¨¾ß ÇÕ´Ï´Ù:

service iptables stop
chkconfig iptables off

ip6tables°¡ ½Ã½ºÅÛÀÌ ºÎÆÃ½Ã ±âº»À¸·Î »ç¿ëµÇµµ·Ï ¼³Á¤ÇϽ÷Á¸é chkconfigÀ» »ç¿ëÇÏ¿© ¼­ºñ½ºÀÇ ·±·¹º§ »óŸ¦ º¯°æÇϽñ⠹ٶø´Ï´Ù.

chkconfig --level 345 ip6tables on

»ç¿ëµÇ´Â ±¸¹®Àº ¸ðµç ¸é¿¡¼­ iptables¿Í µ¿ÀÏÇÏÁö¸¸ ip6tables´Â 128 ºñÆ® ÁÖ¼Ò¸¦ »ç¿ëÇÑ´Ù´Â Â÷ÀÌÁ¡ÀÌ ÀÖ½À´Ï´Ù. ¿¹¸¦ µé¸é ´ÙÀ½ ±ÔÄ¢À» »ç¿ëÇÏ¿© IPv6 ÀÎ½Ä ³×Æ®¿öÅ© ¼­¹ö¿¡¼­ SSH ¿¬°áÀ» Ȱ¼ºÈ­ÇÒ ¼ö ÀÖ½À´Ï´Ù:

ip6tables -A INPUT -i eth0 -p tcp -s 3ffe:ffff:100::1/128 --dport 22 -j ACCEPT

IPv6 ³×Æ®¿öÅ·¿¡ ´ëÇÑ ÀÚ¼¼ÇÑ Á¤º¸¸¦ ¿øÇϽŴٸé http://www.ipv6.org/¿¡¼­ IPv6 Á¤º¸ ÆäÀÌÁö¸¦ ÂüÁ¶ÇϽñ⠹ٶø´Ï´Ù.