Welcome, Guest. Please login or register.

Show Posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.


Topics - Lee Sharp

Pages: [1]
1
General Questions / Trouble with IPv6
« on: August 02, 2017, 04:01:49 PM »
Hey Andy!  I recommended t1n1wall to one of my users for support for his apu, and it is working for him but...  When he enables IPv6, it all goes sideways.  He tried to post but was having trouble signing up.  His thread is here.  http://smallwall.freeforums.net/thread/148/apu2c4  and his problem follows.

-----

So I finally managed, after an arduous process, to get t1n1wall running on the APU2c4. Only one tiny problem so far, besides cosmetics (icon beside DHCP leases to add to reservations is missing, tho the link works). Here's the only major problem today for 2.11.1b140 built on Sat Feb 18 18:30:49 GMT 2017:

Can't enable IP6 - doing so locks up t1n1wall and I have to reset everything via the console and restore saved configuration. I've tried straight from initial configuration with no configurations other than out of box and still no go.

Enable IPv6 support
After enabling IPv6 support, configure IPv6 addresses on your LAN and WAN interfaces, then add IPv6 firewall rules.
Note: you must set an IPv6 address on the LAN interface for the IPv6 support to work.

Of course I had IP6 enabled on SmallWall 1.8.4b11 built on Thu Jun 23 17:11:56 CDT 2016 without problem. Here's t1n1wall 2.11.1b140 built on Sat Feb 18 18:30:49 GMT 2017 status.php - interfaces section:

igb0: flags=8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> metric 0 mtu 1500
options=6403fb<RXCSUM,TXCSUM,VLAN_MTU,VLAN_HWTAGGING,JUMBO_MTU,POLLING,VLAN_HWCSUM,TSO4,TSO6,VLAN_HWTSO,RXCSUM_IPV6,TXCSUM_IPV6>
ether 00:0d:b9:46:3d:a8
inet 192.168.1.1 netmask 0xffffff00 broadcast 192.168.1.255
inet6 fe80::20d:b9ff:fe46:3da8%igb0 prefixlen 64 scopeid 0x1
nd6 options=61<PERFORMNUD,AUTO_LINKLOCAL,NO_RADR>
media: Ethernet autoselect (1000baseT <full-duplex>)
status: active
igb1: flags=8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> metric 0 mtu 1500
options=6403fb<RXCSUM,TXCSUM,VLAN_MTU,VLAN_HWTAGGING,JUMBO_MTU,POLLING,VLAN_HWCSUM,TSO4,TSO6,VLAN_HWTSO,RXCSUM_IPV6,TXCSUM_IPV6>
ether 00:0d:b9:46:3d:a9
inet6 fe80::20d:b9ff:fe46:3da9%igb1 prefixlen 64 scopeid 0x2
inet x.x.x.x netmask 0xfffffe00 broadcast 255.255.255.255
nd6 options=61<PERFORMNUD,AUTO_LINKLOCAL,NO_RADR>
media: Ethernet autoselect (1000baseT <full-duplex>)
status: active
igb2: flags=8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> metric 0 mtu 1500
options=6403fb<RXCSUM,TXCSUM,VLAN_MTU,VLAN_HWTAGGING,JUMBO_MTU,POLLING,VLAN_HWCSUM,TSO4,TSO6,VLAN_HWTSO,RXCSUM_IPV6,TXCSUM_IPV6>
ether 00:0d:b9:46:3d:aa
inet 10.0.0.1 netmask 0xffffff00 broadcast 10.0.0.255
inet6 fe80::20d:b9ff:fe46:3daa%igb2 prefixlen 64 scopeid 0x3
nd6 options=61<PERFORMNUD,AUTO_LINKLOCAL,NO_RADR>
media: Ethernet autoselect (1000baseT <full-duplex>)
status: active
enc0: flags=41<UP,RUNNING> metric 0 mtu 1536
nd6 options=21<PERFORMNUD,AUTO_LINKLOCAL>
groups: enc
lo0: flags=8049<UP,LOOPBACK,RUNNING,MULTICAST> metric 0 mtu 16384
options=600003<RXCSUM,TXCSUM,RXCSUM_IPV6,TXCSUM_IPV6>
inet 127.0.0.1 netmask 0xff000000
inet6 ::1 prefixlen 128
inet6 fe80::1%lo0 prefixlen 64 scopeid 0x5
nd6 options=21<PERFORMNUD,AUTO_LINKLOCAL>
groups: lo
pflog0: flags=100<PROMISC> metric 0 mtu 33184
groups: pflog


Would have posted on t1n1wall forum, but registering to post there doesn't seem to be working atm...so here I am. Need to be pointed in the right direction to help diagnose/enable IP6.

Thanks to your previous help I've gotten this far...just about there.

2
General Questions / What dyn-dns do you use?
« on: October 23, 2015, 03:24:17 PM »
I am working on updating EZ-IPupdate to support modern providers.  (Like no-ip which I use)  So what is everyone using?  And what custom settings are you using to do it, or how are you doing it if not with t1n1wall?

Something like...

No-IP
Service Type = DynDNS (Custpom)
Server = dynupdate.no-ip.com

Or,

DNSomatic
/usr/bin/fetch --no-verify-peer "https://username:[email protected]/nic/update?hostname=dyndnsname" > /tmp/error.log

3
Services / Anyone using mobile IPsec?
« on: August 24, 2015, 03:36:12 PM »
I have had two reports of problems with mobile IPsec on SmallWall since the b567 upgrade to allow l2tp.  As we share this code exactly, I wanted to get more eyes on it.  Is anyone using mobile IPsec on t1n1wall successfully?

Pages: [1]