Re: $B%5%V%M%C%H4V$G(B IPv6 $B$,DL$i$J$$(B

From: NISHIMURA Yutaka <iscream_at_nugae.org>
Date: Wed, 21 Feb 2024 16:24:31 UTC
$B@>B<$G$9!#(B

sysctl net.inet6.ip6.forwarding=1
# $B"-$,L5$$$H(B.ip6.forwarding$B$,M-8z$K$J$C$F$k$H!"(Brtadv$B$+$i%G%U%)%k%H%k!<%?$r<u$1<h$C$F$/$l$J$/$J$C$F(BIPv6$B$N%2!<%H%&%'%$$r8+<:$&(B
sysctl net.inet6.ip6.rfc6204w3=1

> net.inet6.ip6.rfc6204w3: Accept the default router list from ICMPv6 RA messages even when packet forwarding is enabled
$B$i$7$$$N$G!"$3$l$NDI2C$G9T$1$^$;$s$+$M!)(B


Reply to <20240221234639.4904cfff@nowhere.oikumene.ukehi.net>
Hiroo Ono <hiroo@oikumene.net> wrote:
> $B>.Ln42@8$G$9!#(B
> 
> au$B$R$+$j$N%k!<%?!<$N2<$K(B FreeBSD $B$NH"$r$V$i2<$2$F!"2HDmFb(BLAN$B$r(B2$B$D$N%;%0%a%s%H$KJ,$1$F$$$^$9!#(B
> vnet jail $B$r%2!<%H%&%'%$%k!<%?!<MQ$K$7$F!"(B
> 
> em1: $B308~$-(B
> epair0b: $BFb8~$-(BA
> epair2b:: $BFb8~$-(BB
> 
> $B$H$$$&Iw$KJ,$1$F!"(BWIDE DHCP6 $B$G%"%I%l%9$r<h$C$F$-$F!"(Brtadvd $B$GFb8~$-(BA$B$HFb8~$-(BB$B$KG[I[$9$k$3$H$,=P(B
> $BMh$F$$$^$9!#(B
> 
> em1 $B$K(B $B$J$s$H$+(B:1::/64
> epair0b $BG[2<$K(B $B$J$s$H$+(B:2::/64
> epair2b $BG[2<$K(B $B$J$s$H$+(B:3::/64
> 
> $B$H$d$C$F!"(Brc.conf $B$K4XO"$9$k@_Dj$H$7$F$O0J2<$N$h$&$K$9$k$3$H$G!"(B
> 
> ifconfig_em1_ipv6="inet6 accept_rtadv"
> ipv6_cpe_wanif="em1"
> dhcp6c_enable="YES"
> dhcp6c_interfaces="em1"
> rtadvd_enable="YES"
> rtadvd_interfaces="epair0b epair2b"
> ipv6_gateway_enable="YES"
> firewall_enable="YES"
> firewall_flags="-p m4"
> firewall_type="/etc/ipfw-gate.conf"
> 
> em1$B$+$i30(B $B"N(B epair0b$BG[2<(B $B$H(B em1$B$+$i30(B $B"N(B epair2b $BG[2<$G(B IPv6 $B$GDL?.$O$G$-$k$N$G$9$,!"(B
> epair0b$BG[2<(B $B"N(B epair2b$BG[2<(B $B$N(B IPv6 $B$G$NDL?.$,DL$j$^$;$s!#(B
> IPv4 $B$O$=$l$>$l(B 192.168.1.0/24, 192.168.2.0/24 $B$G%W%i%$%Y!<%H%"%I%l%9$r?6$C$F(B
> gateway_enable=YES $B$H$d$C$FDL?.$G$-$F$$$^$9!#(B
> ipfw $B$G%U%#%k%?%j%s%0$O$7$F$$$^$9$,!"(B
> pass icmp6 from any to any
> pass ip6 from any to any
> $B$GAGDL$7$K$7$F$bDL?.=PMh$^$;$s$G$7$?!#(B
> $B2?$,0-$$$s$G$7$g$&$+!#(B
> 
> netstat -rn -f inet6 $B$N7k2L$O$3$s$J46$8$K$J$j$^$9!#(B
> 
> Internet6:
> Destination                       Gateway                       Flags     Netif Expire
> ::/96                             ::1                           UGRS        lo0
> default                           fe80::a10:86ff:fe43:ad2c%em1  UG          em1
> ::1                               link#1                        UHS         lo0
> ::ffff:0.0.0.0/96                 ::1                           UGRS        lo0
> 240f:3f:802f:1::/64               link#2                        U           em1
> 240f:3f:802f:1:224:81ff:fe81:5b09 link#2                        UHS         lo0
> 240f:3f:802f:2::/64               link#3                        U       epair0b
> 240f:3f:802f:2:6c:cfff:fec7:1f0b  link#3                        UHS         lo0
> 240f:3f:802f:3::/64               link#4                        U       epair2b
> 240f:3f:802f:3:17:7bff:fee7:360b  link#4                        UHS         lo0
> fe80::/10                         ::1                           UGRS        lo0
> fe80::%lo0/64                     link#1                        U           lo0
> fe80::1%lo0                       link#1                        UHS         lo0
> fe80::%em1/64                     link#2                        U           em1
> fe80::224:81ff:fe81:5b09%em1      link#2                        UHS         lo0
> fe80::%epair0b/64                 link#3                        U       epair0b
> fe80::6c:cfff:fec7:1f0b%epair0b   link#3                        UHS         lo0
> fe80::%epair2b/64                 link#4                        U       epair2b
> fe80::17:7bff:fee7:360b%epair2b   link#4                        UHS         lo0
> ff02::/16                         ::1                           UGRS        lo0
> 
> IPv4 $B$ODL$k$N$G5$$E$$$F$$$J$+$C$?$N$G$9$,!"(BIPv6 $B$G30$+$i@\B3$G$-$F$$$?$N$,!"2H$K5"$C$F$/$k$H7R$,$i(B
> $B$J$/$J$k$H$$$&8=>]$,5/$-$F$:$C$H$=$s$J$@$C$?$3$H$,$o$+$j$^$7$?!#(B
> ----
> Hiroo Ono
> 

-- 
NISHIMURA,Yutaka./$B@>B<$f$?$+(B <iscream@nugae.org>