Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Two different IPv6 prefixes from the same Wireguard server tunneled to pfsense

    Scheduled Pinned Locked Moved IPv6
    1 Posts 1 Posters 127 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • T
      th0r88
      last edited by

      Hi all,

      My ISP has a really bad IPv6 support so I went down the rabbit hole and found a willing LIR to sponsor my ASN and got a PA IPv6 block with it. Later I bought another sponsored PI block.

      Then I found a VPS provider who was willing to open a BGP session with me and I announced my prefixes there. I set up a Wireguard server on my VPS and tunneled it to pfsense. I also made a testing peer for my computer and confirmed Wireguard is working correctly and I get an IPv6 from my VPS.

      My pfsense peers connect and handshake with my VPS's Wireguard server. No problems there:

      Screenshot_2024-08-12_at_19_26_09.jpg

      So I have two tunnels:

      • same IPv4 endpoint, different ports
      • Tunnel 1 allows IPv6s from range aaaa:bb4:1040::/48 connected to VLAN95
      • Tunnel 2 allows IPv6s from range aaaa:bbbb:b74:::/48 connected to VLAN96

      Problem:

      • only Tunnel 1 clients on VLAN95 have IPv6 connectivity
      • Tunnel 2 clients on VLAN96 don't have IPv6 connectivity

      What can I do to solve this?

      Wireguard tunnel interfaces:

      Screenshot_2024-08-12_at_19_28_58.jpg

      Screenshot_2024-08-12_at_19_29_09.jpg

      VLANs:

      Screenshot_2024-08-12_at_19_29_25.jpg

      Screenshot_2024-08-12_at_19_29_37.jpg

      Gateways and static routes:

      Screenshot_2024-08-12_at_19_30_25.jpg

      Screenshot_2024-08-12_at_19_30_32.jpg

      Firewall rules:

      Screenshot_2024-08-12_at_19_31_20.jpg

      Screenshot_2024-08-12_at_19_31_28.jpg

      Router advertisements:

      Screenshot_2024-08-12_at_19_31_48.jpg

      Screenshot_2024-08-12_at_19_31_56.jpg

      My computer gets IPv6 from both prefixes:

      Screenshot_2024-08-12_at_19_32_35.jpg

      Screenshot_2024-08-12_at_19_33_09.jpg

      1 Reply Last reply Reply Quote 0
      • First post
        Last post
      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.