From nobody Sat Mar 12 00:55:12 2022 X-Original-To: freebsd-net@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 3BD891A16746 for ; Sat, 12 Mar 2022 00:55:57 +0000 (UTC) (envelope-from kudzu@tenebras.com) Received: from mail-lj1-x229.google.com (mail-lj1-x229.google.com [IPv6:2a00:1450:4864:20::229]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (2048 bits) client-digest SHA256) (Client CN "smtp.gmail.com", Issuer "GTS CA 1D4" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4KFkrD14Qmz4jDx for ; Sat, 12 Mar 2022 00:55:56 +0000 (UTC) (envelope-from kudzu@tenebras.com) Received: by mail-lj1-x229.google.com with SMTP id 17so12171333lji.1 for ; Fri, 11 Mar 2022 16:55:56 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=tenebras-com.20210112.gappssmtp.com; s=20210112; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=+pb9Ewaf0nGAzRbTj6NsropBAYNkD+c+d82DL6Vx/ic=; b=T9lU1fSHbQxJC8n/xZGCnUX+ClG4XWtWxGIWmKX2qsp0PzhI1AjdziLuHzGzEpM24o 1wxMSZzugmNIaUKqVWlA0P72Qo3d0QOgvKtHSbZJjjR4fXJARg0T7hFGqEPvME1I9xh5 VE1ICsQoC/iHVDyTO07FG/6LrWXrEfxSj/eeNwUDiMHQE89jToCsPQXPSW9x/wmDfyBy zQ6/9oAJGbPLrOOW8bp/NfH26CZYXHdC6FwG8b/xqyqVFz5XNWxZC1o0qpyLpeR4m8ln cHuSFmiYK6nfAMz7dt9BPkhuNxponAvNXI4KXy85sYNSP0NHSD9VNUtWTuNBh2DyGuSe OPZA== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20210112; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=+pb9Ewaf0nGAzRbTj6NsropBAYNkD+c+d82DL6Vx/ic=; b=18h2A8Dp6EqSrNf3Rv41V+MPwdDn4Eve08nMMONbDN8IK8fKpIsD6mPdN7MENBELfj 6QQ/db+deSrZy372/ONl5WKcmUHVOL/j+XaXUNUF/RxbCc0hGbyyb+2cbc6KJ/NI4TPT LT4DDP2ypOWK4t5I7bXmCan+QgagfNg2KNEEfResmqcZ3WfzuQpCp1dm6UIEA2az8+k9 JBRmU87wmetd0wPv+rUiV6gmruHdLe/21hJZSxsKJiX3zdFRHFKWHCXQ0TG6tibP+Xmi r32+VHxCOGhOk8sMvZSFA5uQrZh1wqnk8bBifeaNq/EJNFlcrAeZbEdj1DoyUcqM0mdo pNaw== X-Gm-Message-State: AOAM532ZNZZwr1jPdIEUNsje3GulN67BymXCt7EXPEZ7grF099Lp34Os QgQ4VF6f20uS/59T+i+smquoFNXJtkUbJjvhwtWBXHAObKho3Q== X-Google-Smtp-Source: ABdhPJxt0eOOW7FIBoNIaXI+WTqJ+vsLUf/t6Lqjm0g80TUpN8XXxceZFS0TbQu9UxYvva6NUon9Shtdsc98t0tYoDo= X-Received: by 2002:a2e:5748:0:b0:249:23b0:fab with SMTP id r8-20020a2e5748000000b0024923b00fabmr1163631ljd.265.1647046547897; Fri, 11 Mar 2022 16:55:47 -0800 (PST) List-Id: Networking and TCP/IP with FreeBSD List-Archive: https://lists.freebsd.org/archives/freebsd-net List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-net@freebsd.org MIME-Version: 1.0 References: In-Reply-To: From: Michael Sierchio Date: Fri, 11 Mar 2022 16:55:12 -0800 Message-ID: Subject: Re: IPv6: How does one have the system use a prefix gotten from rtsol with a static host part? To: Larry Rosenman Cc: Freebsd net Content-Type: multipart/alternative; boundary="0000000000006a9d0b05d9fae87d" X-Rspamd-Queue-Id: 4KFkrD14Qmz4jDx X-Spamd-Bar: - Authentication-Results: mx1.freebsd.org; dkim=pass header.d=tenebras-com.20210112.gappssmtp.com header.s=20210112 header.b=T9lU1fSH; dmarc=none; spf=none (mx1.freebsd.org: domain of kudzu@tenebras.com has no SPF policy when checking 2a00:1450:4864:20::229) smtp.mailfrom=kudzu@tenebras.com X-Spamd-Result: default: False [-1.98 / 15.00]; ARC_NA(0.00)[]; NEURAL_HAM_MEDIUM(-0.76)[-0.763]; R_DKIM_ALLOW(-0.20)[tenebras-com.20210112.gappssmtp.com:s=20210112]; FROM_HAS_DN(0.00)[]; NEURAL_HAM_LONG(-1.00)[-0.996]; MIME_GOOD(-0.10)[multipart/alternative,text/plain]; PREVIOUSLY_DELIVERED(0.00)[freebsd-net@freebsd.org]; DMARC_NA(0.00)[tenebras.com]; TO_MATCH_ENVRCPT_SOME(0.00)[]; TO_DN_ALL(0.00)[]; DKIM_TRACE(0.00)[tenebras-com.20210112.gappssmtp.com:+]; RCPT_COUNT_TWO(0.00)[2]; RCVD_IN_DNSWL_NONE(0.00)[2a00:1450:4864:20::229:from]; NEURAL_HAM_SHORT(-0.93)[-0.926]; MLMMJ_DEST(0.00)[freebsd-net]; R_SPF_NA(0.00)[no SPF record]; FROM_EQ_ENVFROM(0.00)[]; MIME_TRACE(0.00)[0:+,1:+,2:~]; SUBJECT_ENDS_QUESTION(1.00)[]; ASN(0.00)[asn:15169, ipnet:2a00:1450::/32, country:US]; RCVD_COUNT_TWO(0.00)[2]; RCVD_TLS_ALL(0.00)[] X-ThisMailContainsUnwantedMimeParts: N --0000000000006a9d0b05d9fae87d Content-Type: text/plain; charset="UTF-8" On Fri, Mar 11, 2022 at 4:45 PM Larry Rosenman wrote: > Greetings, > I'm moving my colo to a new provider, and was wondering what the > /etc/rc.conf looks like for > getting a prefix-delegation via my FireWall, and then using a static > host part on the interface? > > I.E., im a purely static setup, I have ::53:1 set for a host. > What do I put in /etc/rc.conf > to use the prefix that I get from my router, but using the ::53:1 host > address? I have a fixed ipv6 address on my firewall, but use dhcp6c (pkg / ports) to get a delegated /64 for my internal networks. ifconfig_eth0_ipv6="inet6 2001:558:6045:52:b85f:5149:d333:a02a prefixlen 128 accept_rtadv" ifconfig_eth1_ipv6="inet6 -accept_rtadv" ipv6_gateway_enable="YES" ipv6_activate_all_interfaces="YES" rtadvd_enable="YES" rtadvd_interfaces="eth1" dhcp6c_enable="YES" dhcp6c_interfaces="eth0" ipv6_default_interface="eth1" --0000000000006a9d0b05d9fae87d Content-Type: text/html; charset="UTF-8" Content-Transfer-Encoding: quoted-printable

On Fri, Mar 11, 2022 at 4:45 PM Larry Ros= enman <ler@lerctr.org> wrote:
Greetings,
=C2=A0 =C2=A0 =C2=A0I'm moving my colo to a new provider, and was wonde= ring what the
/etc/rc.conf looks like for
getting a prefix-delegation via my FireWall, and then using a static
host part on the interface?

I.E., im a purely static setup, I have <prefix>::53:1 set for a host.= =C2=A0
What do I put in /etc/rc.conf
to use the prefix that I get from my router, but using the ::53:1 host
address?

I have a fixed ipv6 address on my = firewall, but use dhcp6c (pkg / ports) to get a delegated /64 for my intern= al networks.=C2=A0

ifconfig_eth0= _ipv6=3D"inet6 2001:558:6045:52:b85f:5149:d333:a02a prefixlen 128=C2=A0<= span style=3D"font-variant-ligatures:no-common-ligatures">accept_rtadv"<= /p>

ifconfig= _eth1_ipv6=3D"inet6 -accept_rtadv"


ipv6_gateway_= enable=3D"YES"

ipv6_activate= _all_interfaces=3D"YES"

=

rtadvd_enable= =3D"YES"

rtadvd_interf= aces=3D"eth1"

=

dhcp6c_enable= =3D"YES"

dhcp6c_interf= aces=3D"eth0"

ipv6_default_interface= =3D"eth1"=C2=A0
--0000000000006a9d0b05d9fae87d--