Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 4 Jun 2019 15:59:14 -0400
From:      David Mehler <dave.mehler@gmail.com>
To:        Kurt Jaeger <pi@freebsd.org>
Cc:        freebsd-pf <freebsd-pf@freebsd.org>
Subject:   Re: FreeBSD 12, pf, and Dual IP stack?
Message-ID:  <CAPORhP4om1qan3W7kZN2sDjTygwexQyheQy3V3WzPhFEW9c_nA@mail.gmail.com>
In-Reply-To: <20190604175445.GE5902@home.opsec.eu>
References:  <CAPORhP5Mm49QPzBW7DgziS55EqeWSBDqn9vBkkeGpSdcsApUig@mail.gmail.com> <20190604175445.GE5902@home.opsec.eu>

next in thread | previous in thread | raw e-mail | index | archive | help
Hello Kurt,

Thank you for your reply.

Yes, an ifconfig on my vtnet0 interface does show the ipv6 address and
it has prefixlen 64 I'm assuming that's what your refering to? Can you
clarify your meaning about ipv6 aliases?

Thanks.
Dave.


On 6/4/19, Kurt Jaeger <pi@freebsd.org> wrote:
> Hi!
>
>> I'm running a vps running FreeBSD 12 with pf as firewall. I've got a
>> public ipv4 and a public ipv6 address, the latter is not going through
>> a tunnel broker.
>>
>> I can not wrap my head around ipv6 probably because I'm use to decimal
>> representations and ipv4 addressing. If anyone has a primer I would
>> welcome it.
>>
>> With regards ipv6 I don't know if my address gives me one address or a
>> range?
>
> It gives you one IPv6 address, not a range.
>
> But as the netmask is /64, you can add quite a few ipv6 interface
> aliases to play with.
>
>> If a range what I'm wanting to do is assign that range to jails
>> running on a cloned interface lo1 so that each of them can have their
>> own ipv6 as well as natted ipv4 addresses.
>
> Yes, that might work.
>
> --
> pi@opsec.eu            +49 171 3101372                    One year to go !
>



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?CAPORhP4om1qan3W7kZN2sDjTygwexQyheQy3V3WzPhFEW9c_nA>