Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Passing IPv6 traffic through pfsense unmolested

    IPv6
    4
    6
    5.6k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M
      Matchstick
      last edited by

      Since pfsense doesn't currently support IPv6 I'm attempting to just get pfsense (in filtered bridge mode) to allow thought IPv6 traffic but all radvd traffic is being blocked by the default deny rule so my network can't get the IPv6 addresses being announced by my ADSL router.

      The Allow IPv6 traffic option in on in System: Advanced functions but that makes no difference so I'm wondering if there's anything I can do to get this working or whether I should just give up on pfsense and go back to m0n0wall.

      1 Reply Last reply Reply Quote 0
      • D
        databeestje
        last edited by

        Have you read the welcome to this board message? Really?

        1 Reply Last reply Reply Quote 0
        • M
          Matchstick
          last edited by

          Yes I have but that seems to cover modifying pfsense to enable full(ish) IPv6 support.

          I don't want IPv6 tunnel endpoint, routing or firewalling at the moment, those are taken care of, I just want to get pfsense to obey the pre-existing Allow IPv6 traffic checkbox and allow IPv6 traffic through.

          1 Reply Last reply Reply Quote 0
          • D
            databeestje
            last edited by

            It appears I don't understand you.

            1 Reply Last reply Reply Quote 0
            • M
              Matthias
              last edited by

              I think he's talking about the settings under Advanced -> Networking -> IPv6 Options. I don't understand these options myself specifically the IPv6 to IPv4 NAT encapsulation. Do I check the box to allow IPv6 and NAT encapsulation then enter in my WAN address? I would have to set up a DHCPv6 server and then this would allow access to IPv6?

              1 Reply Last reply Reply Quote 0
              • johnpozJ
                johnpoz LAYER 8 Global Moderator
                last edited by

                Have not done this since moved tunnel endpoint to my pfsense box.. Much better way to do it!!  Now you have firewall control at pfsense, etc.

                But to allow the tunnel endpoint to be box on lan side of your pfsense box, allow ipv6 traffic and put in the lan side IP address you want to be the endpoint, example 192.168.1.100 or something, whatever the IP of your box is that is going to be the endpoint of your ipv6 tunnel.

                ipv6behindpfsense.jpg
                ipv6behindpfsense.jpg_thumb

                An intelligent man is sometimes forced to be drunk to spend time with his fools
                If you get confused: Listen to the Music Play
                Please don't Chat/PM me for help, unless mod related
                SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                1 Reply Last reply Reply Quote 0
                • First post
                  Last post
                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.