<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[[SOLVED]IPv6 Ping&#x2F;Access from Outside &amp; DHCP Assign to Client]]></title><description><![CDATA[<p dir="auto">Hi guys,</p>
<p dir="auto">1. I'm trying to figure out how on earth can i allow <a href="http://www.subnetonline.com/pages/ipv6-network-tools/online-ipv6-ping.php" target="_blank" rel="noopener noreferrer nofollow ugc">http://www.subnetonline.com/pages/ipv6-network-tools/online-ipv6-ping.php</a> to Ping my IPv6 address. I've followed the guide on <a href="http://doc.pfsense.org/index.php/Using_IPv6_on_2.0" target="_blank" rel="noopener noreferrer nofollow ugc">http://doc.pfsense.org/index.php/Using_IPv6_on_2.0</a> and still being lost. When i open <a href="http://www.kame.net" target="_blank" rel="noopener noreferrer nofollow ugc">http://www.kame.net</a> i can see the dancing turtle and assume my connection is on IPv6 Address. The site <a href="http://test-ipv6.com/" target="_blank" rel="noopener noreferrer nofollow ugc">http://test-ipv6.com/</a> also confirms my dual stack address which is 2001:470:35:bd::ffe3 . Am i missing Rules to allow? Here's my current rules <a href="http://pastebin.com/KwQzwuxe" target="_blank" rel="noopener noreferrer nofollow ugc">http://pastebin.com/KwQzwuxe</a></p>
<p dir="auto">2. I'm still confuse after reading over and over again the <a href="http://doc.pfsense.org/index.php/Using_IPv6_on_2.0" target="_blank" rel="noopener noreferrer nofollow ugc">http://doc.pfsense.org/index.php/Using_IPv6_on_2.0</a> . It does gives out IPv6 address to my Win XP SP3 PC and as i mentioned earlier, all ok but when comes to ping from outside, it doesn't respond. By the way, i'm on pppoe dynamic address if anything ring a bell. And does my range seems ok ? As per below</p>
<p dir="auto">Subnet 2001:470:35:bd:0:0:0:0<br />
Subnet mask 64 bits<br />
Available range 2001:470:35:bd:0:0:0:1 - 2001:470:35:bd:ffff:ffff:ffff:ffff</p>
<p dir="auto">First box : 2001:470:35:bd:0:0:0:FF00      Second box : 2001:470:35:bd:0:0:0:FFFF<br />
And the address that i got &gt;&gt;&gt; 2001:470:35:bd::ffe3    &lt;&lt; Weird to me hmmm</p>
<p dir="auto">I'd appreciate if you guys could point me to the right direction or any guides that can help with my situation.<br />
Some info about my he.net :</p>
<p dir="auto">IPv6 Tunnel Endpoints<br />
Server IPv4 Address:216.218.221.42<br />
Server IPv6 Address:2001:470:35:bd::1/64<br />
Client IPv4 Address:60.xxx.xxx.xxx<br />
Client IPv6 Address:2001:470:35:bd::2/64<br />
Available DNS Resolvers<br />
Anycasted IPv6 Caching Nameserver:2001:470:20::2<br />
Anycasted IPv4 Caching Nameserver:74.82.42.42<br />
Routed IPv6 Prefixes<br />
Routed /64:2001:470:36:bd::/64</p>
<p dir="auto">Thanks for helping out</p>
<p dir="auto">P/S : I'm on PPPoE connection and it's 2.10 AM GMT +8 Kuala Lumpur. Guess i'll go to sleep first and turn off my pc. Will get back once i got up .</p>
]]></description><link>https://forum.netgate.com/topic/37340/solved-ipv6-ping-access-from-outside-dhcp-assign-to-client</link><generator>RSS for Node</generator><lastBuildDate>Sat, 11 Apr 2026 15:11:59 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/37340.rss" rel="self" type="application/rss+xml"/><pubDate>Sat, 17 Sep 2011 18:08:57 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to [SOLVED]IPv6 Ping&#x2F;Access from Outside &amp; DHCP Assign to Client on Mon, 19 Sep 2011 11:58:48 GMT]]></title><description><![CDATA[<p dir="auto">Correct, you make firewall rules on the ipv6 interface to allow traffic into your lan ipv6 address. It is routing as it should.</p>
<p dir="auto">Default firewall rule is to block everything and allow what you need.</p>
]]></description><link>https://forum.netgate.com/post/296452</link><guid isPermaLink="true">https://forum.netgate.com/post/296452</guid><dc:creator><![CDATA[databeestje]]></dc:creator><pubDate>Mon, 19 Sep 2011 11:58:48 GMT</pubDate></item><item><title><![CDATA[Reply to [SOLVED]IPv6 Ping&#x2F;Access from Outside &amp; DHCP Assign to Client on Sun, 18 Sep 2011 08:51:55 GMT]]></title><description><![CDATA[<p dir="auto">UPDATE :</p>
<p dir="auto">1. Problem resolved on this issue. I can now run Dual Stack IPv4 &amp; IPv6 Mail Server/Web Server/DNS Server or anything. After extensive reading, i finally understand that i need to add Rules on my HE.Net Interface –&gt; http://192.168.0.1/firewall_rules.php?if=opt1 . This is the interface originally OPT1 that i need to add Rules to Pass IPv6 TCP/UDP to my PC IPv6 Address. Sure it's not secure, but this serves as testing purpose and not to be use as in real thing. And finally i'm certified as Administrator in He.Net IPv6 certification.</p>
<p dir="auto">2. Seems the address issue 2001:470:35:bd::ffe3 assign by DHCPv6 server kinda bugging me. I thought i would get something like 2001:470:35:bd::2:1:ffe3 or anything besides that one. Guess i really need to understand how the assign goes on. But it works that for sure.</p>
<p dir="auto">Regarding the no 1 , before i add those rules, i've done some test via external websites that checks my IPv6 connectivity to my Web Server (internal LAN) on port 80 . Says everything was perfect on port 80 (it manage to grab my Apache info) and i can't understand as to why i need a specific rules to Pass IPv6 traffic to specific address on other port such as 25/110/143 and others. Have i found an issue?</p>
<p dir="auto">If i may suggest, to update <a href="http://doc.pfsense.org/index.php/Using_IPv6_on_2.0" target="_blank" rel="noopener noreferrer nofollow ugc">http://doc.pfsense.org/index.php/Using_IPv6_on_2.0</a> with a new guide section for anyone who wants to host/run IPv6 servers etc:Apache/DNS/Mail behind pfsense .</p>
<p dir="auto">Thank you guys - Keep up the good work ! two thumbs up for pfSense and looking forward to 2.1 release!</p>
]]></description><link>https://forum.netgate.com/post/296302</link><guid isPermaLink="true">https://forum.netgate.com/post/296302</guid><dc:creator><![CDATA[codemaster]]></dc:creator><pubDate>Sun, 18 Sep 2011 08:51:55 GMT</pubDate></item><item><title><![CDATA[Reply to [SOLVED]IPv6 Ping&#x2F;Access from Outside &amp; DHCP Assign to Client on Sun, 18 Sep 2011 04:16:27 GMT]]></title><description><![CDATA[<p dir="auto">Hi guys,</p>
<p dir="auto">Just to let you know i've use dibbler a dhcpv6 client and below are the config</p>
<p dir="auto">–--- snippet ------<br />
iface "Local Area Connection" {<br />
  ia<br />
  option domain<br />
}</p>
<p dir="auto">And my <em>ipv6 if</em> in cmd shows</p>
<blockquote>
<p dir="auto">Interface 4: Ethernet: Local Area Connection<br />
  Guid {7552437D-85FB-4F73-9FC4-6864BE5231F6}<br />
  uses Neighbor Discovery<br />
  uses Router Discovery<br />
  link-layer address: 6c-f0-49-49-cf-74<br />
    preferred global 2001:470:35:bd::ffe3, life 92m57s/47m57s (manual)<br />
    preferred link-local fe80::6ef0:49ff:fe49:cf74, life infinite<br />
    multicast interface-local ff01::1, 1 refs, not reportable<br />
    multicast link-local ff02::1, 1 refs, not reportable<br />
    multicast link-local ff02::1:ff49:cf74, 1 refs, last reporter<br />
    multicast link-local ff02::1:ff00:ffe3, 1 refs, last reporter<br />
  link MTU 1500 (true link MTU 1500)<br />
  current hop limit 64<br />
  reachable time 39500ms (base 30000ms)<br />
  retransmission interval 1000ms<br />
  DAD transmits 1<br />
  default site prefix length 48</p>
</blockquote>
<p dir="auto">Here's the <em>netsh interface ipv6 show route</em> output</p>
<blockquote>
<p dir="auto">C:\Documents and Settings\admin&gt;netsh interface ipv6 show route<br />
Querying active state…</p>
<p dir="auto">Publish  Type      Met  Prefix                    Idx  Gateway/Interface Name<br />
-------  --------  ----  ------------------------  ---  ---------------------<br />
no      Autoconf  256  ::/0                        4  fe80::2e0:56ff:fe4d:1427</p>
<p dir="auto">C:\Documents and Settings\admin&gt;</p>
</blockquote>
<p dir="auto">My tunnel is currently UP and working, i haven't run <em>dibbler dhcpv6 client</em> but i can open http://ipv6.google.com and http://www.kame.net shows a dancing turtle. Could anyone can please ping my IPv6 address please for testing purpose. I haven't done any changes on Rule in pfsense, still using the same rule allow ICMPv6 and all traffic. Thanks</p>
]]></description><link>https://forum.netgate.com/post/296283</link><guid isPermaLink="true">https://forum.netgate.com/post/296283</guid><dc:creator><![CDATA[codemaster]]></dc:creator><pubDate>Sun, 18 Sep 2011 04:16:27 GMT</pubDate></item></channel></rss>