I dread the day we HAVE to use it, there doesn't seem to be the same tools available to monitor per client bandwidth etc in pfSense if you are using IPv6. Plus my previous issues where the Xbox would get a different IP every time it was rebooted so I couldn't blanket ban incoming connections or even identify it WAS the Xbox receiving that traffic. I suppose I could create a second LAN and stick it on a VLAN with IPv4 and IPv6, but is it really worth it when everything works fine as it is? I will probably revisit once I get FTTP so don't have Multi-WAN to worry about.
I get the idea of firewalling clients, but I'd much rather firewall clients AND policy route, so there is zero chance of someone getting into a closed-sourced box from the outside. Sure I could put iffy clients on a vlan, but not if those clients also need standard IPv4 LAN access too due to the common use of broadcast traffic for their apps.
Example, I can't us the Android app for my surround receiver if I'm on the Honor Router 3 as even in Access Point mode it seems to block broadcast traffic, it wont SEE the receiver.
We seem to be in a stalemate where many consumer devices don't support IPv6 properly because home users don't use IPv6, and the fact the reason we can't use IPv6 is BECAUSE the devices don't like it.