• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

[SOLVED] IPv6 'routing' issue (WAN <-> LAN)

Scheduled Pinned Locked Moved IPv6
28 Posts 3 Posters 13.6k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • H
    hda
    last edited by Mar 2, 2015, 11:47 PM Mar 2, 2015, 11:05 PM

    For sure: Set block bogon network to False = uncheck

    Your iface DT to WAN is OK & transparant, because you have your IPv4, right ?
    Therefore IPv6 must be possible too. Just find out how(protocol pfSense-WAN) to get it from ISP.

    I would test to use config: dhcp6 & use IPv4 connectivity & prefix & delegation size =/48, if SLAAC doesn't yield.

    Just experiment with the combinations. ;)

    DNS servers go in: System: General Setup

    1 Reply Last reply Reply Quote 0
    • T
      tic226
      last edited by Mar 2, 2015, 11:29 PM

      @hda:

      For sure: Set block bogon network to False = uncheck

      DNS servers go in: System: General Setup

      Ok i've disabled the bogon block, but i still can't ping6 from the pfsense node, ping6 from the LAN
      side the gateway or external addresses time out and ping6 from WAN to the gateway doesn't work at all.
      (Not even from the link-local address)

      @hda:

      Your iface to WAN is OK & transparant. Because you have your IPv4, right ?
      Therefore IPv6 must be possible too. Just find out how(protocol pfSense-WAN) to get it from ISP.

      Yes, IPv4 is working fine. On the draytek IPv6 must be set to PPP, i don't know in which way the
      whole process differs to SLAAC if it does at all. But the link-local addresses look ok, it 'should' work.
      Maybe after all the fiddling around with settings over the last 2 days i need a clean default setup
      to start from the beginning (also the draytek box) and then it will all magically work out…

      1 Reply Last reply Reply Quote 0
      • H
        hda
        last edited by Mar 2, 2015, 11:59 PM Mar 2, 2015, 11:32 PM

        If you changed the configs/interfaces/"fiddling", then a reboot of the pfSense will do.

        You do not have to worry about the DT anymore, it is not relevant w.r.t. pfSense IPv6 config.
        The pass-through/bridging works, just as with IPv4, it works for IPv6 too.

        You have to experiment with IPv6 pfSense-WAN config's, (including rebooting pfSense), to find out how the ISP wants to communicate for IPv6.

        Even the MTU value matters for IPv6. (I work with 1492 on WAN & LAN).

        1 Reply Last reply Reply Quote 0
        • T
          tic226
          last edited by Mar 4, 2015, 6:15 PM

          I had very little time over the last 2 days but today i finally got it right, IPv6 is working.
          The trick was to set the WAN interface config to 'None' for IPv6, i saw that after a reset to
          default and no IPv6 configuration at all the WAN side got it's SLAAC address and
          the correct ISP gateway address. After setting a static IPv6 on the LAN interface ping6
          finally could reach external IPv6 addresses.

          Thank you for all your help and time on this!

          1 Reply Last reply Reply Quote 0
          • H
            hda
            last edited by Mar 4, 2015, 7:41 PM Mar 4, 2015, 7:34 PM

            Good for you  :)

            @tic226:

            …
            The trick was to set the WAN interface config to 'None' for IPv6, i saw that after a reset to
            default and no IPv6 configuration at all the WAN side got it's SLAAC address
            ...

            Did you set pfSense-WAN to None for IPv6 and got a SLAAC working ???

            1 Reply Last reply Reply Quote 0
            • T
              tic226
              last edited by Mar 4, 2015, 8:26 PM Mar 4, 2015, 8:21 PM

              @hda:

              Good for you  :)

              @tic226:

              …
              The trick was to set the WAN interface config to 'None' for IPv6, i saw that after a reset to
              default and no IPv6 configuration at all the WAN side got it's SLAAC address
              ...

              Did you set pfSense-WAN to None for IPv6 and got a SLAAC working ???

              EDIT: I didn't mean SLAAC address but link local address. SLAAC was disabled.

              Yes, when i set up the Draytek box last year my ISP explained their process
              to me and it worked with the setting 'PPP' which is basically the same as
              pfsense's 'None'.
              So the ISP is only giving out the IPv6 gateway address,
              no prefix and this happens through the PPPoE connection.
              Took me a week of back and forth with Draytek support and a few calls
              to ISP when eventually i got an email from my ISP's admin that he downloaded
              the manual of my Draytek box and he told me to set it to 'PPP' which tells it to
              get the gateway address via PPPoE and to set a static IPv6 on the LAN side.
              That worked. But i didn't expect this to work exactly the same way with pfsense
              as well…

              1 Reply Last reply Reply Quote 0
              • H
                hda
                last edited by Mar 4, 2015, 9:57 PM Mar 4, 2015, 8:57 PM

                OK, sounds plausible. Would you be willing to show us the final settings of the DTv130 for this case ?

                1 Reply Last reply Reply Quote 0
                • T
                  tic226
                  last edited by Mar 6, 2015, 12:11 PM

                  @hda:

                  OK, sounds plausible. Would you be willing to show us the final settings of the DTv130 for this case ?

                  I've added a few screenshots, they're a bit messy, i didn't clean up the config yet.

                  snapshot6.png
                  snapshot6.png_thumb
                  snapshot7.png
                  snapshot7.png_thumb
                  snapshot8.png
                  snapshot8.png_thumb
                  snapshot9.png
                  snapshot9.png_thumb
                  snapshot10.png
                  snapshot10.png_thumb

                  1 Reply Last reply Reply Quote 0
                  28 out of 28
                  • First post
                    28/28
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
                    This community forum collects and processes your personal information.
                    consent.not_received