23.01 DUID question - I can't spoof my way to a new prefix
-
I wanted to test forcing a new prefix by deleting dhcp6c_duid /var/db/ and changing
DUID generation method
in System - Advanced - Network - DHCP6 DUID.
I tried all options there generating UUIDs or random MAC addresses, unchecking
Do not allow PD/Address release
and rebooting.
My observation is that the sha256sum of /var/db/dhcp6c_duid does indeed change, but the ISP still assigns the same prefix. Note the service package here assigns one dynamic /64 (no /56 or /60 PD.. ugh).
The prefix they assign resolves to the WAN interface's MAC address which is why I wanted to play around with this.
Why does dhcpv6 over pppoe not get a different dynamic /64 when the contents of /var/db/dhcp6c_duid have clearly changed and I am rebooting ?
-
This is the opposite problem of what some others have. What happens if you uncheck Do not allow PD/Address release?
-
@jknott said in 23.01 DUID question - I can't spoof my way to a new prefix:
This is the opposite problem of what some others have.
That's the story of my life, brother
I specialize in bizarre tickets.
The reason I want a new prefix is that this one directly resolves to the actual MAC address of the CPE and the OUI on this one is very specific. I'd rather obfuscate. Just out of habit.
I did uncheck that option (meaning yes absolutely release the PD on restart) but they still send the same prefix.
It may need to be offline for a bit. Maybe they tie it to the pppoe credential for a period of time and a reboot is too short.
I called them to ask if their policy changed and the prefixes are static now but they assured me that it's still a /64 only and it's definitely dynamic.