Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Hurricane Electric Tunnel question

    Scheduled Pinned Locked Moved IPv6
    11 Posts 3 Posters 4.8k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S
      survive
      last edited by

      Hi danswartz,

      Did you make a rule so HE can ping you? The tunnel won't come up until they can.

      -Will

      1 Reply Last reply Reply Quote 0
      • D
        danswartz
        last edited by

        I've always had a icmp any rule on the WAN.  When I sniff the WAN, I don't see anything from their gateway except the unreachables :(  The one thing I had to change was that the howto says to use the "CABLE" interface for the local end.  I don't have cable (verizon fios), so I used WAN instead - I assume that was right?

        1 Reply Last reply Reply Quote 0
        • D
          danswartz
          last edited by

          I'm running firmware from 8/12 - do I maybe need to upgrade and/or do another gitsync?

          1 Reply Last reply Reply Quote 0
          • D
            danswartz
            last edited by

            I thought maybe the chicago POP was having issues, so I tried the one in ashburn - same exact issue.  Am I really the only one who can't get this working using the instructions on the wiki?  Pending any reply to this, I have requested a static tunnel from sixxs (I already had an ayiya tunnel), just to try to eliminate HE as an issue.

            1 Reply Last reply Reply Quote 0
            • D
              danswartz
              last edited by

              Now, I'm really in WTF territory.  SIXXS approved my new static tunnel, so I add it.  I go to the dashboard, and…  Both tunnels are now live.  So, I then delete the SIXXS tunnel, and...  The HE.net tunnel is now offline and I can't ping the other side.  Something is badly broken here :(

              1 Reply Last reply Reply Quote 0
              • D
                databeestje
                last edited by

                not sure what you did and the symptoms really don't ring a bell. Only thing I can think of is that FreeBSD reacts a bit wonky on the configuration of the gif interface.

                I have mine set to 128 bits on the gif interface and 126 on the OPT2 interface. Some people have more or less success with the subnet mask on the gif. Some with 64, others with 126 or 128.

                1 Reply Last reply Reply Quote 0
                • D
                  danswartz
                  last edited by

                  Wonky for sure.  I deleted everything, and re-did the exact same sequence I did before (as listed in the HOWTO), only this time I went with /128 for the GIF and /126 for the OPT1, and now it works :)  Thanks :)

                  1 Reply Last reply Reply Quote 0
                  • D
                    danswartz
                    last edited by

                    Kinda curious about the dhcp6 stuff.  I have a routed /64 from HE.  What do folks generally use for the IPv6 router advertisement mode?  What are the pros and cons?

                    1 Reply Last reply Reply Quote 0
                    • D
                      databeestje
                      last edited by

                      we use rtadvd, you can select this on the dhcp6 server page. unmanaged works fine if you don't need dns and can use v4 dns from dhcp.

                      1 Reply Last reply Reply Quote 0
                      • D
                        danswartz
                        last edited by

                        Okay, thanks.  I gave it a try using managed, just so dns would work right.  So far, so good - I pass the test-ipv6 site :)  Great work on this!

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.