Re: VPN traffic leaks in IPv6/IPv4 dual-stack networks/hosts

2012-11-27 Thread Seth Mos
Op 27-11-2012 14:58, Fernando Gont schreef: > Folks, > > FYI. This is might affect FreeBSD users employing e.g. OpenVPN: > . > > For a project such as OpenVPN, a (portable) fix might be non-trivial. > However, I guess FreeBSD might hook so

6rd patch status

2012-11-06 Thread Seth Mos
Hello, The pfSense project uses the 6rd patch against the stf interface, which works but does not work with prefix lengths larger then 32 bits. What is the status of this work? As it is we can not support 6rd networks that deploy a 41 bit prefix length with a 15 bit ipv4 mask for a /56 deleg

Re: IPv6 MTU discrovery -- how should it work?

2012-04-29 Thread Seth Mos
Make sure you do not block icmp6. Or atleast make sure that unreachable and toobig packets come through even if you do not want echo. Cheers, Seth typed on a tiny touchscreen, why exactly? Lev Serebryakov schreef: >Hello, Freebsd-net. > > My home network is connected to IPv6 world with Hurric

Re: Hetzner.de IPv6 and FreeBSD -- default gateway is on other prefix, need to add static route before default -- how?

2012-04-29 Thread Seth Mos
Use the link local addrees of the gateway. That should just work. Cheers, Seth typed on a tiny touchscreen, why exactly? Lev Serebryakov schreef: >Hello, Freebsd-net. > > "Famous" dedicated server provider Hetzner provides native IPv6 for >servers, but with rather strange routing configuration:

Re: 6rd status

2012-04-06 Thread Seth Mos
Op 2-4-2012 8:54, Seth Mos schreef: Op 29-3-2012 16:44, Seth Mos schreef: Hi, Only to reply to myself here, I've not seen response yet. Replying to myself again. I confirm that the 6rd patch to stf from hrs@ indeed works as advertised. The Charter and Sakura 6rd relays do not e

Re: 6rd status

2012-04-01 Thread Seth Mos
Op 29-3-2012 16:44, Seth Mos schreef: Hi, I've been trying to use the srd device patch from Masakazu-san from here. http://bougaidenpa.org/masakazu/archives/54 Only to reply to myself here, I've not seen response yet. I've now also tested the patched stf interface from hrs@. I

6rd status

2012-03-29 Thread Seth Mos
Hi, I've been trying to use the srd device patch from Masakazu-san from here. http://bougaidenpa.org/masakazu/archives/54 After walking through the configure steps and configuring a default route I get a network unreachable. http://www.pastie.org/private/j6ufhloh2kqesznee6y8na [2.1-DEVELOP

kern/127528: [icmp]: icmp socket receives icmp replies not owned by the process.

2009-05-13 Thread Seth Mos
The following reply was made to PR kern/127528; it has been noted by GNATS. From: "Seth Mos" To: bug-follo...@freebsd.org, seth@xs4all.nl Cc: Subject: kern/127528: [icmp]: icmp socket receives icmp replies not owned by the process. Date: Wed, 13 May 2009 21:58:40 +0200 (

Re: Racoon 0.7 on FreeBSD 6 with a lot of VPN tunnels

2007-10-04 Thread Seth Mos
waiting for something that will never arrive or run away on a buffer which does not exist anymore. Any further suggestions? Kind regards, Seth Mos pfSense Developer Seth Mos schreef: Hello there, I have problems with racoon hanging in sbwait state with ipsec-tools 0.6.7 or getting into a tailspin

Racoon 0.7 on FreeBSD 6 with a lot of VPN tunnels

2007-09-27 Thread Seth Mos
need a reliable solution to this problem. Kind regards, Seth Mos pfSense Developer ___ freebsd-net@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-net To unsubscribe, send any mail to "[EMAIL PROTECTED]"