IPv6 happy eyeballs breaks connection to secure sites

OSX / Safari seems to choose protocol IPv4 or IPv6 based on best network performance (syn-ack roundtrip time ?). What is even worse, the browser toggles protocol within a secure SSL session (e.g. banking). Most sites that contain sensitive information will break the connection for security reasons if the IP address changes.

In my opinion, Safari should give IPv6 a preference, and should only fallback to IPv4 if the connection is really bad. Moreover, the number of switchovers should be limited since it is almost impossible to finish a secure transaction sequence.


As most Internet providers do not yet support IPv6, IPv6 enabled networks do so by tunneling, which makes the IPv6 network slightly slower than the IPv4 network. Still I believe we should give IPv6 a preference.


Please Apple, dont discourage early IPv6 adopters and correct this behavior. By the way: Chrome on OSX suffers from the same problem.


Jan C.


One additional note: the IPv6 tunnel is not terminated on my Macs, but on the network vdsl2 gateway device

macbook air, Mac OS X (10.6.6)

Posted on Mar 13, 2013 3:50 AM

Reply
5 replies

Mar 15, 2013 3:27 AM in response to jcolg

Seems like in 10.8.3, Apple kind of solved this problem: Safari and Chrome do not switch anymore between IPv6 and IPv4, but seem to prefer IPv4 (in my case the shortest roundtrip time).

I still believe Apple should give preference to IPv6, but at least I can access the secure sites again without adding blackhole routes.

This thread has been closed by the system or the community team. You may vote for any posts you find helpful, or search the Community for additional answers.

IPv6 happy eyeballs breaks connection to secure sites

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple Account.