Look for an ipfw example using NPTv6

Michael Sierchio kudzu at tenebras.com
Wed Jun 19 17:04:27 UTC 2019


Are you saying NPTv6 cannot rewrite a LL prefix to a public prefix, such as
the one held on the external interface?

On Wed, Jun 19, 2019 at 4:26 AM Andrey V. Elsukov <bu7cher at yandex.ru> wrote:

> On 18.06.2019 23:00, Michael Sierchio wrote:
> > I'm looking for a simple firewall example using nptv6 to translate
> > link-local addresses to match the prefix assigned by my ISP.  I'll be
> using
> > stateful rules and allowing only outbound traffic.
> >
> > If you have a snippet, I'l be grateful.  Thanks.
>
> NPTv6 module is targeted to translate routed traffic. IPv6 link-local
> addresses are not forward-able. Thus you can not configure nptv6
> instance with such prefix.
>
> --
> WBR, Andrey V. Elsukov
>
>

-- 

"Well," Brahmā said, "even after ten thousand explanations, a fool is no
wiser, but an intelligent person requires only two thousand five hundred."

- The Mahābhārata


More information about the freebsd-ipfw mailing list