dslreports logo
site
 
    All Forums Hot Topics Gallery
spc

spacer




how-to block ads


Search Topic:
uniqs
20
share rss forum feed

GmDude66

join:2007-09-09
York, PA
Reviews:
·Comcast
reply to NetFixer

Re: Recieving /128 Address (OpenWRT)

I am thinking this is a firewall issue.

Can you please look over this config?

root@OpenWrt:~# ip6tables -L
Chain INPUT (policy ACCEPT)
target     prot opt source               destination         
ACCEPT     all      anywhere             anywhere            ctstate RELATED,ESTABLISHED 
ACCEPT     all      anywhere             anywhere            
syn_flood  tcp      anywhere             anywhere            tcp flags:FIN,SYN,RST,ACK/SYN 
input_rule  all      anywhere             anywhere            
input      all      anywhere             anywhere            
 
Chain FORWARD (policy DROP)
target     prot opt source               destination         
ACCEPT     all      anywhere             anywhere            ctstate RELATED,ESTABLISHED 
forwarding_rule  all      anywhere             anywhere            
forward    all      anywhere             anywhere            
reject     all      anywhere             anywhere            
 
Chain OUTPUT (policy ACCEPT)
target     prot opt source               destination         
ACCEPT     all      anywhere             anywhere            ctstate RELATED,ESTABLISHED 
ACCEPT     all      anywhere             anywhere            
output_rule  all      anywhere             anywhere            
output     all      anywhere             anywhere            
 
Chain forward (1 references)
target     prot opt source               destination         
zone_lan_forward  all      anywhere             anywhere            
zone_wan_forward  all      anywhere             anywhere            
 
Chain forwarding_lan (1 references)
target     prot opt source               destination         
 
Chain forwarding_rule (1 references)
target     prot opt source               destination         
 
Chain forwarding_wan (1 references)
target     prot opt source               destination         
 
Chain input (1 references)
target     prot opt source               destination         
zone_lan   all      anywhere             anywhere            
zone_wan   all      anywhere             anywhere            
 
Chain input_lan (1 references)
target     prot opt source               destination         
 
Chain input_rule (1 references)
target     prot opt source               destination         
 
Chain input_wan (1 references)
target     prot opt source               destination         
 
Chain output (1 references)
target     prot opt source               destination         
zone_lan_ACCEPT  all      anywhere             anywhere            
zone_wan_ACCEPT  all      anywhere             anywhere            
 
Chain output_rule (1 references)
target     prot opt source               destination         
 
Chain reject (5 references)
target     prot opt source               destination         
REJECT     tcp      anywhere             anywhere            reject-with tcp-reset 
REJECT     all      anywhere             anywhere            reject-with icmp6-port-unreachable 
 
Chain syn_flood (1 references)
target     prot opt source               destination         
RETURN     tcp      anywhere             anywhere            tcp flags:FIN,SYN,RST,ACK/SYN limit: avg 25/sec burst 50 
DROP       all      anywhere             anywhere            
 
Chain zone_lan (1 references)
target     prot opt source               destination         
input_lan  all      anywhere             anywhere            
zone_lan_ACCEPT  all      anywhere             anywhere            
 
Chain zone_lan_ACCEPT (2 references)
target     prot opt source               destination         
ACCEPT     all      anywhere             anywhere            
ACCEPT     all      anywhere             anywhere            
 
Chain zone_lan_DROP (0 references)
target     prot opt source               destination         
DROP       all      anywhere             anywhere            
DROP       all      anywhere             anywhere            
 
Chain zone_lan_REJECT (1 references)
target     prot opt source               destination         
reject     all      anywhere             anywhere            
reject     all      anywhere             anywhere            
 
Chain zone_lan_forward (1 references)
target     prot opt source               destination         
zone_wan_ACCEPT  all      anywhere             anywhere            
forwarding_lan  all      anywhere             anywhere            
zone_lan_REJECT  all      anywhere             anywhere            
 
Chain zone_wan (1 references)
target     prot opt source               destination         
ACCEPT     udp      fe80::/10            fe80::/10           udp spt:dhcpv6-server dpt:dhcpv6-client 
ACCEPT     ipv6-icmp    anywhere             anywhere            ipv6-icmp echo-request limit: avg 1000/sec burst 5 
ACCEPT     ipv6-icmp    anywhere             anywhere            ipv6-icmp echo-reply limit: avg 1000/sec burst 5 
ACCEPT     ipv6-icmp    anywhere             anywhere            ipv6-icmp destination-unreachable limit: avg 1000/sec burst 5 
ACCEPT     ipv6-icmp    anywhere             anywhere            ipv6-icmp packet-too-big limit: avg 1000/sec burst 5 
ACCEPT     ipv6-icmp    anywhere             anywhere            ipv6-icmp time-exceeded limit: avg 1000/sec burst 5 
ACCEPT     ipv6-icmp    anywhere             anywhere            ipv6-icmp bad-header limit: avg 1000/sec burst 5 
ACCEPT     ipv6-icmp    anywhere             anywhere            ipv6-icmp unknown-header-type limit: avg 1000/sec burst 5 
ACCEPT     ipv6-icmp    anywhere             anywhere            ipv6-icmp router-solicitation limit: avg 1000/sec burst 5 
ACCEPT     ipv6-icmp    anywhere             anywhere            ipv6-icmp neighbour-solicitation limit: avg 1000/sec burst 5 
ACCEPT     ipv6-icmp    anywhere             anywhere            ipv6-icmp router-advertisement limit: avg 1000/sec burst 5 
ACCEPT     ipv6-icmp    anywhere             anywhere            ipv6-icmp neighbour-advertisement limit: avg 1000/sec burst 5 
input_wan  all      anywhere             anywhere            
zone_wan_REJECT  all      anywhere             anywhere            
 
Chain zone_wan_ACCEPT (2 references)
target     prot opt source               destination         
ACCEPT     all      anywhere             anywhere            
ACCEPT     all      anywhere             anywhere            
 
Chain zone_wan_DROP (0 references)
target     prot opt source               destination         
DROP       all      anywhere             anywhere            
DROP       all      anywhere             anywhere            
 
Chain zone_wan_REJECT (2 references)
target     prot opt source               destination         
reject     all      anywhere             anywhere            
reject     all      anywhere             anywhere            
 
Chain zone_wan_forward (1 references)
target     prot opt source               destination         
ACCEPT     ipv6-icmp    anywhere             anywhere            ipv6-icmp echo-request limit: avg 1000/sec burst 5 
ACCEPT     ipv6-icmp    anywhere             anywhere            ipv6-icmp echo-reply limit: avg 1000/sec burst 5 
ACCEPT     ipv6-icmp    anywhere             anywhere            ipv6-icmp destination-unreachable limit: avg 1000/sec burst 5 
ACCEPT     ipv6-icmp    anywhere             anywhere            ipv6-icmp packet-too-big limit: avg 1000/sec burst 5 
ACCEPT     ipv6-icmp    anywhere             anywhere            ipv6-icmp time-exceeded limit: avg 1000/sec burst 5 
ACCEPT     ipv6-icmp    anywhere             anywhere            ipv6-icmp bad-header limit: avg 1000/sec burst 5 
ACCEPT     ipv6-icmp    anywhere             anywhere            ipv6-icmp unknown-header-type limit: avg 1000/sec burst 5 
forwarding_wan  all      anywhere             anywhere            
zone_wan_REJECT  all      anywhere             anywhere
 


NetFixer
Freedom is NOT Free
Premium
join:2004-06-24
The Boro
Reviews:
·Cingular Wireless
·Comcast Business..
·Vonage
If there is anything in the ip6tables information that you posted that would keep your router from processing LAN to WAN IPv6 traffic, I don't see it; but perhaps someone with a keener eye (and more IPv6 experience)* will look at it and let you know definitively.

*When I was actively providing network support before my retirement last year, I did not get involved with native IPv6 support because none of the ISPs I worked with offered it (and I did not even have any clients who needed/used IPv6 tunnels). I have therefore only been involved with my own IPv6 connections, and I have had to learn what I know about IPv6 the hard way.
--
A well-regulated militia, being necessary to the security of a free State, the right of the people to keep and bear arms shall not be infringed.

When governments fear people, there is liberty. When the people fear the government, there is tyranny.