-
Notifications
You must be signed in to change notification settings - Fork 711
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
interfaces: optionally support "auto_linklocal" in bridges #926
Comments
After doing some research I have found this pfSense issue. The FreeBSD man page (man 4 if_bridge) says:
At the console I have manually setup a link local IPv6 address on the bridge interface which seems to work currently. The bridge interface receives an IPv6 address from the main router. So it seems that OPNsense needs some enhancement to take care of this. |
I found this Mail in Internet: Can you tell me please how I can enter the IPv6 link-local manually for the Bridge Interface on OPNsense at the console? I'm looking for a solution since 3 months but no chance :-( |
Due to a private request: tickets are closed after a few months of inactivity to avoid stale work queues. I’ll reopen for now, but we need a continuation of discussion. For the time being I’m absolutely unsure about the state of the described issue in FreeBSD as it relates to OPNsense (11.1 now in 18.7, 11.2 when we release 19.1). |
Unfortunately, I am not using OPNsense anymore as it was chosen to use another firewall solution. |
@fichtner : Thank you very much for ReOpening this Ticket. I have to say firstly, that I have IPv6 disabled on my configuration at the point as I created the Bridge Interface, I mean no assigned static IPv6 address or over Track Interface to WAN is configured on this Interface. in comparison with the other Interfaces, the Bridge Interface gets no IPv6 Link-Local as it is created, therefore IPv6 on the Devices behind this Interface won’t work when a static IPv6 address is configured on this Interface, BUT, the Bridge Interface gets automatically an IPv6 Link-Local when its IPv6 address is over Track Interface configured ! The solution for that in pfs* forum a 5 years ago, from pendi : edit the file interfaces.inc ( /usr/local/etc/inc/ ), and what he wrote: To fix this I added (copied) the following lines into interfaces.inc to the function "interface_bridge_configure" just before the line "if (isset($bridge['enablestp'])) {": /* Create link local address for bridges */ I had to make a reboot after editing that file and it works perfectly over about 10 months without any problem, but I have to edit it after every Update, but as I said: it works perfectly, and the Bridge Interface becomes an assigned IPv6 Link-Local. I hope it will help. |
Sorry this took so long. From the amount of reports and the little work required here but still nobody doing the integration work in 3 years one could argue that the configuration is rather exotic and not relevant most of the time. FWIW, now you can optionally enable link-local addresses for each bridge configuration. |
thank you... I will try it soon...
…Sent from my iPhone
On 25. Apr 2019, at 09:41, Franco Fichtner ***@***.***> wrote:
Sorry this took so long. From the amount of reports and the little work required here but still nobody doing the integration work in 3 years one could argue that the configuration is rather exotic and not relevant most of the time. FWIW, now you can optionally enable link-local addresses in each bridge configuration.
—
You are receiving this because you commented.
Reply to this email directly, view it on GitHub, or mute the thread.
|
I am using OPNsense has a transparent filtering bridge, where WAN and LAN are bridged.
The new bridge interface works successfully for IPv4, but not for IPv6 as it does not receive a link local address, although I tried the DHCPv6 and SLAAC setting in the webgui for IPv6 interface configuration.
My main router's DHCPv6 server is configured to provide IA_PD and IA_ND.
Any idea how to fix this?
The text was updated successfully, but these errors were encountered: