We have some VPN 3005 concentrators. I can't find any specific information if they are susceptible to the "ShellShock" bug. Despite the fact that they are not supported officially already I suppose, some consideration regarding this vulnerability have to get done.
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...