Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    DHCPv6 prefix delegation over multiple local VLANs

    Scheduled Pinned Locked Moved IPv6
    8 Posts 2 Posters 820 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • W
      wishyou
      last edited by

      My ISP is finally providing proper IPv6 dual-stack and I'm getting an address and a nice /56 prefix assigned on the WAN interface. The LAN interface is sett to track the WAN and so far so good, everything is working fine, IPv6 routing is working and traffic is flowing in and out.

      But I've also got a couple of local VLAN tagged networks that is set to get a /64 net each and here it gets interesting. I have to problems.

      • The IPv6 prefix ID does not seem to take. In the snip below the prefix ID for each local network has been set to the VLAN tag value (which I also use as a value for the 3rd IPv4 octet). But when the IPv6 addresses are assigned it seems to just go from zero and up, red circles.

      • Only the first VLAN on a physical interface is getting an IPv6 address/range. In the screenshot both GUESTS, IOT and OPT_TEST are one the same physical interface. They are configured identically (apart from ip4 address and ip6 prefix) but only the first one that I configured (IOT) gets an IPv6 address.

      f7a11e3f-69b7-4ae6-8b94-9ac40f77d355-image.png

      All this is on pfSense 2.4.5-RELEASE (amd64). What I'm i doing wrong?

      JKnottJ 1 Reply Last reply Reply Quote 0
      • JKnottJ
        JKnott @wishyou
        last edited by

        @wishyou

        Are you selecting a prefix ID for each VLAN? With a /56, your choices are 0 - ff. You can only use each one once.

        PfSense running on Qotom mini PC
        i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
        UniFi AC-Lite access point

        I haven't lost my mind. It's around here...somewhere...

        1 Reply Last reply Reply Quote 0
        • W
          wishyou
          last edited by wishyou

          Yes, I know and I do. I'm trying to use the VLAN tag/4rd octet (tried both as DEC and HEX), but I've tried lots of different options as well. And btw the GUI complains if you reuse a value, refusing to save the settings.

          JKnottJ 1 Reply Last reply Reply Quote 0
          • JKnottJ
            JKnott @wishyou
            last edited by

            @wishyou

            You'd use the hex value, as I showed with 0 - ff. It works fine for me here.

            PfSense running on Qotom mini PC
            i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
            UniFi AC-Lite access point

            I haven't lost my mind. It's around here...somewhere...

            1 Reply Last reply Reply Quote 0
            • W
              wishyou
              last edited by wishyou

              I got it working... Apparently I had enabled Do not allow PD/Address release on the WAN IPv6 config page. This probably messed up something. I disabled it and everything works as intended.

              JKnottJ 1 Reply Last reply Reply Quote 0
              • JKnottJ
                JKnott @wishyou
                last edited by

                @wishyou

                That should be on, unless you want your prefix to change occasionally. I found disconnecting/reconnecting the WAN cable was enough to do that. Perhaps you had a conflict, which has now been resolved.

                PfSense running on Qotom mini PC
                i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
                UniFi AC-Lite access point

                I haven't lost my mind. It's around here...somewhere...

                1 Reply Last reply Reply Quote 0
                • W
                  wishyou
                  last edited by

                  Okay, I turned it on again and nothing broke, so I'll leave it at that then.

                  JKnottJ 1 Reply Last reply Reply Quote 0
                  • JKnottJ
                    JKnott @wishyou
                    last edited by

                    @wishyou

                    Good. When I started with pfSense, that option wasn't available, so my prefix changed on occasion.

                    PfSense running on Qotom mini PC
                    i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
                    UniFi AC-Lite access point

                    I haven't lost my mind. It's around here...somewhere...

                    1 Reply Last reply Reply Quote 0
                    • First post
                      Last post
                    Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.