LAN (igb0) -> v4: 192.168.1.1/24 v6/t6: 2xxx:xxxx:xxxx:xxxx:21a:8cff:fe43:32f8/64 OPT1 (igb2) -> WAN (igb1) -> v4/DHCP4: 1x.xx.xx.61/16 v6/DHCP6: fe80::21a:8cff:fe43:32f9%igb1/64 interconnect (igb3) -> v4: 192.168.101.1/24
root@OPNsense:~ # ifconfig igb1igb1: flags=8863<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> metric 0 mtu 1500 description: WAN (wan) options=4800028<VLAN_MTU,JUMBO_MTU,NOMAP> ether 00:1a:8c:43:32:f9 inet6 fe80::21a:8cff:fe43:32f9%igb1 prefixlen 64 scopeid 0x2 inet 100.81.158.61 netmask 0xffff0000 broadcast 100.81.255.255 media: Ethernet autoselect (1000baseT <full-duplex>) status: active nd6 options=23<PERFORMNUD,ACCEPT_RTADV,AUTO_LINKLOCAL>root@OPNsense:~ # ping6 -c2 ipv6.google.comPING6(56=40+8+8 bytes) 2xxx:xxxx:xxxx:xxxx:21a:8cff:fe43:32f8 --> 2a00:1450:400e:811::200e16 bytes from 2a00:1450:400e:811::200e, icmp_seq=0 hlim=120 time=7.632 ms16 bytes from 2a00:1450:400e:811::200e, icmp_seq=1 hlim=120 time=7.480 ms--- ipv6.l.google.com ping6 statistics ---2 packets transmitted, 2 packets received, 0.0% packet lossround-trip min/avg/max/std-dev = 7.480/7.556/7.632/0.076 ms
Was genau meinst du mit Wireguard-Endpunkt?Die FW-Regel ist dann quasi wie ein IPv6-Forward auf die lan IPv6?
Erhalte nun folgende IPv6 am WAN-Interface2a00:6020:a199:44a::19eaIst dies dann meine "feste IPv6" die von außen erreichbar sein sollte?Muss meine LAN dann auch mit 2a00:6020:a199:44a beginnen?