logoalt Hacker News

FloatArtifacttoday at 12:21 AM1 replyview on HN

This is a combination problem poor default (listening to all interfaces?) and also IPv6 can be publicly accessible. It's a bit dependent on how this is configured upstream by default, but this is a gotcha compared to IPv4.


Replies

chrisjjtoday at 12:28 AM

The article says no, the default is listening to just localhost. Given the instances in question have been deliberately configured to listen on public ports, calling this misconfiguration seems somewhat unjustified.

show 1 reply