Re: DHCPDv6 in non-vnet jail

From: Marek Zarychta <zarychtam_at_plan-b.pwste.edu.pl>
Date: Tue, 29 Mar 2022 15:21:13 UTC
Dnia Tue, Mar 29, 2022 at 10:11:29AM +0200, Goran Mekić napisał(a):
> On Sun, Mar 27, 2022 at 02:34:11PM +0000, Bjoern A. Zeeb wrote:
> > I assume you have /dev/bpf available inside that jail by a devfs rule so
> > effectively you have all network interfaces and traffic available?
> As a form of test I've put rtadvd inside the same non-vnet jail and I
> can see RA message arrive to the vnet jail. I though I "disconnected"
> something concerning IPv6, but that's obviously not the case.
> 
> Let's take a step back. Is there any howto/tutorial on how to put
> isc-dhcpd6 in a non-vnet jail? I don't care if it's jail.conf or some
> jail manager. Can I somehow see where packets end up, like dtrace?
> Should I try some other server/client for DHCPv6? If I can make it work
> in any scenario, that would be good starting point for me to figure out
> what's wrong with my current setup.
> 
> Regards,
> meka

Running DHCPv6 in a jail is possible and pretty straigtforward if
/dev/bpf is exposed, but I have never tried to run rtadvd(8) in the
jail. The net/isc-dhcp44-server works flawlessy in dedicated DHCPv6
reduntant jails without VNET, but the RA is always done on the core
switches for all suppoted subnets in my case. Please consider that
DHCPv6 is never replacement, but addition to properly confiugred RA.

Best regards,
-- 
Marek Zarychta