• IPv6 / track interface / pass DNS server to client

    24
    0 Votes
    24 Posts
    3k Views
    P

    @Bob-Dig said in IPv6 / track interface / pass DNS server to client:

    rewall-aliases of my hosts by itself, bravo.

    What? What? Really? No joke?

  • IPv6 on SoCal Spectrum

    23
    0 Votes
    23 Posts
    6k Views
    J

    Charter will allow you a /56 if you select that on the "DHCPv6 Prefix Delegation size" config on the WAN interface. Then as stated you can use a 0-ff for the prefix ID on your internal interfaces to assign a /64 to that network.

  • DHCP6 request specific address

    2
    0 Votes
    2 Posts
    374 Views
    JKnottJ

    @Crunk_Bass said in DHCP6 request specific address:

    Is there any way I can request an address with a specific interace identifier?

    Not that I'm aware of.

  • Static IPv6 behind a Fritzbox 7583 via PPPOE not working

    2
    0 Votes
    2 Posts
    462 Views
    C

    What does your current setup look like?
    Is your pfSense behind your Fritz!Box router?
    Wich device does all the PPPoE stuff?

    I'm a little confused. Is IPv6 working when you are using the Fritz!Box?

    At first glance it looks like you would be better off using something like a DrayTek Vigor165 as a modem instead of the Fritz!Box.

  • How to bridge my ISP IPv6 to my LAN ?

    8
    0 Votes
    8 Posts
    2k Views
    JKnottJ

    @dr_tech

    Did the ISP provide configuration info?

  • Two WANs, TWO LANs, One not tracking

    2
    0 Votes
    2 Posts
    476 Views
    A

    @amello

    So open a ticket - https://redmine.pfsense.org/issues/10364 - and was rejected asking for more information to be provided here.

    Not sure what information to provide, but on the ISPs side all is working, as with two pfSenses works without any issues. Only when consolidating to one box is that the problem appears.

  • 0 Votes
    5 Posts
    1k Views
    P

    @jimp If states are not to be preserved, then a disable/enable (via a heartbeat mechanism or otherwise) might do the trick.. of course with a disruption of the IPv6 connectivity while the tunnel is re-establishing itself.

  • IPv6 SLAAC addresses mixed up in subnets

    3
    0 Votes
    3 Posts
    402 Views
    ?

    No, Netgear and HP. All managed.

  • IPv6 Connectivity problem in vm

    27
    0 Votes
    27 Posts
    3k Views
    Bob.DigB

    What I finally did was deleting the interface and then creating it new. This time there seems to be no problem.

    Thanks everybody.

    I have to read more log files to get a sense, when there is something not ok.

    Also I crafted some new IPv6 addresses in the DHCPv6 Server, like this one:
    ::192:168:2:37

    😋

  • This topic is deleted!

    1
    0 Votes
    1 Posts
    7 Views
    No one has replied
  • Need help with ULA addressing scheme

    2
    0 Votes
    2 Posts
    409 Views
    S

    To the ones that may have the same problem as me, I managed to go a little further. To allow incoming ICMPv6 ping messages I had to uncheck those two options on my interface:
    8d0c7aec-55ca-44c1-a620-957d549360ae-image.png

    I'm still having a problem with my Cisco SG250-26 which does not let some IPv6 packets passing through...

  • Suddenly, trouble with HE Net tunnel IPv6 traffic

    12
    0 Votes
    12 Posts
    743 Views
    kiokomanK

    eh i wonder if he.net do some kind of check on the hardware used and it need time to sync after a change, mac address or fingerprint or something 🤔

  • Unable to SSH to VM in LAN from the internet

    2
    0 Votes
    2 Posts
    196 Views
    T

    I think it's being blocked by the default deny rule. Make a rule on that VLAN3_HB interface for tcp port 22 and set it to accept.

    If you assign a new interface there aren't any rules applied to it so everything will be blocked by default. Also if the machine your connecting to is on another segment make sure a firewall rule that will let that traffic pass is applied.

    I assume ssh to pfsense is working because pfsense has anti lockout rules for local ssh managment.

  • Warnings in syslog

    2
    0 Votes
    2 Posts
    427 Views
    jimpJ

    Sounds like a similar issue to what happens when devices use NIC teaming or similar to impersonate one another's addresses in non-standard ways.

    I don't see a sysctl to affect that directly but you might try adjusting the value of the net.inet6.ip6.log_interval tunable. You can make an entry for it under System > Advanced on the tunables tab. It controls the number of seconds between log messages. So you could maybe try -1 or 0 to disable, or a much higher value so it happens less frequently (e.g. 120, 3600, 86400...)

  • Configuring IPv6 on PFsense

    12
    0 Votes
    12 Posts
    3k Views
    A

    Alright so that is working, but now the LAN VM's have no access to the WAN. I have been troubleshooting for a while now on what this could be but cannot find anything on it... I have no gateway for LAN nor routing setup.

  • Unstable HE.NET tunnel with MTU > 1280

    13
    0 Votes
    13 Posts
    2k Views
    D

    As noted, so long as you have zero-loss connection, fragmentation is not an issue. For example, my HE.NET connection is a corporate one and out of the peak times (around 3 p.m. work days) it passes all tests for any MTU <= 1472 and MSS <= MTU - 20. Problems arise only under heavy load.

    By the way, the harder targets (to me) are those in Eastern Europe, Latin America, and Africa.

  • Has anybody tried to use pfSense in a ipv6 only environment?

    1
    0 Votes
    1 Posts
    258 Views
    No one has replied
  • IPv6 setup with public subnet

    13
    0 Votes
    13 Posts
    1k Views
    dotdashD

    @JKnott said in IPv6 setup with public subnet:

    There are enough /48s to give every single person on earth over 4000 of them. This is with only 1/8 of the IPv6 address space assigned to GUAs. Over 3/4 of the address space isn't even allocated to anything.

    <devils advocate>
    This is true, but it is not reflected in the price ARIN charges for v6 space. For a small provider, the annual fee doubles when you go from a /40 (256 customer allocations) to a /36 (4096 customer sites), and doubles again when you go to a /32 (65,536 sites). Probably smaller shops are trying to cut costs on v6 deployment, as it offers little benefit to them if they have sufficient v4 space.
    </devils advocate>

  • IPv6 on Telekom Business Line

    11
    0 Votes
    11 Posts
    1k Views
    P

    @karsten_berlin said in IPv6 on Telekom Business Line:

    known by me, but the "internal routing" within the pfsense from LAN to WAN and vice-versa is a mystery in that case to me.

    We have a normal business DSL by DTAG, WAN is PPPoE, DHCP6, DHCPv6 Prefix of /56, LAN with Trackinterface WAN. All is static. It's like dynamic but always the same IPs. Maybe it helps, don't know if its different with other connection types.
    pfadmin

  • Dynamic DNS with Godaddy and Comcast prefix delegation

    20
    0 Votes
    20 Posts
    2k Views
    johnpozJ

    When you get your IPv6 through free tunnel from HE, you get to ;)

    ptrzone.jpg

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.