Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    DHCPv6 DNS Listing With Prefix from ISP that is not Static

    Scheduled Pinned Locked Moved IPv6
    6 Posts 3 Posters 1.1k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • I
      iamperson347
      last edited by

      Hi all,

      I'm trying to determine the correctly way to advertise an ipv6 address for my DNS server. I have assigned the DNS server a static ip via dhcpv6 static mapping. However, it appears the prefix my ISP gives me for can change. This creates a problem when trying to put a static entry in place for listing a DNS server ipv6 address with DHCPv6 (because at some point, that ip will change).

      Is there a way to make this work? With openwrt, when putting in a dhcpv6 reservation, it would assign the same static mapping (suffix) on the ISP prefix (GLA) and the ULA address. However, in my attempt to setup ULAs with pfsense, it appears that the static mapping suffix did not apply to the ULA, only the GLA.

      Any help would be appreciated.

      1 Reply Last reply Reply Quote 0
      • JKnottJ
        JKnott
        last edited by

        There's a setting about not releasing the prefix. If that isn't selected, pfSense may get a new prefix for something as minor as disconnecting/reconnecting the WAN cable.Which version of pfSense are you running? Earlier versions didn't have that setting.

        PfSense running on Qotom mini PC
        i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
        UniFi AC-Lite access point

        I haven't lost my mind. It's around here...somewhere...

        1 Reply Last reply Reply Quote 0
        • I
          iamperson347
          last edited by

          Ahhh... I didn't think about that. Are you referring to "Do not allow PD/Address release"? I'm on the latest pfsense.

          Are prefixes typically pretty stable once this is enabled or does it depend on ISP?

          1 Reply Last reply Reply Quote 0
          • JKnottJ
            JKnott
            last edited by JKnott

            That's it. Make sure it's selected. I can't say the addresses will never change, but they are stable.

            PfSense running on Qotom mini PC
            i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
            UniFi AC-Lite access point

            I haven't lost my mind. It's around here...somewhere...

            1 Reply Last reply Reply Quote 0
            • MikeV7896M
              MikeV7896
              last edited by

              How stable it will be depends largely on your ISP and their expiration of delegated prefixes. My ISP has an expiration period of 7 days, so as long as I'm not offline for more than a week, I should maintain the same prefix. Of course the only times I'm offline are when they're doing maintenance, so it's rare that it changes. It's been the same for over a year (along with my IPv4 WAN address).

              An ISP with a much shorter expiration period, though, could prompt a prefix change if you're offline that long.

              The S in IOT stands for Security

              JKnottJ 1 Reply Last reply Reply Quote 0
              • JKnottJ
                JKnott @MikeV7896
                last edited by

                @virgiliomi

                I've had the same prefix since that setting was added, about 2 years ago IIRC. That's stable enough for me. On IPv4, my host name is based on firewall & cable modem MAC addresses and so never changes unless I change hardware. This means that no matter what my IPv4 address is, I can still find my network. However, my IPv4 address is also stable, so long as I leave my firewall running, other than the rare occasion when my ISP makes network changes.

                PfSense running on Qotom mini PC
                i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
                UniFi AC-Lite access point

                I haven't lost my mind. It's around here...somewhere...

                1 Reply Last reply Reply Quote 0
                • First post
                  Last post
                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.