tunnelbroker: adds suggestion to source-address assignment for users with dynamic IPs (#1415)

This commit is contained in:
Ginko 2024-05-03 13:17:39 -04:00 committed by GitHub
parent 377ab20c2e
commit 42d29b1e83
No known key found for this signature in database
GPG Key ID: B5690EEEBB952194
2 changed files with 15 additions and 6 deletions

View File

@ -1,8 +1,8 @@
set interfaces tunnel tun0 address '2001:470:6c:779::2/64' #Tunnelbroker Client IPv6 Address
set interfaces tunnel tun0 address '2001:470:6c:779::2/64' #Tunnelbroker Client IPv6 address
set interfaces tunnel tun0 description 'HE.NET IPv6 Tunnel'
set interfaces tunnel tun0 encapsulation 'sit'
set interfaces tunnel tun0 remote '216.66.86.114' #Tunnelbroker Server IPv4 Address
set interfaces tunnel tun0 source-address '172.29.129.60' # Tunnelbroker Client IPv4 Address or if there is NAT the current WAN interface address
set interfaces tunnel tun0 remote '216.66.86.114' #Tunnelbroker Server IPv4 address
set interfaces tunnel tun0 source-address '172.29.129.60' # Tunnelbroker Client IPv4 address. See note below
set protocols static route6 ::/0 interface tun0
@ -10,4 +10,4 @@ set interface ethernet eth2 address '2001:470:6d:778::1/64' # Tunnelbroker Route
set service router-advert interface eth2 name-server '2001:470:20::2'
set service router-advert interface eth2 prefix 2001:470:6d:778::/64 # Tunnelbroker Routed /64 prefix
set system name-server 2001:470:20::2 #Tunnelbroker DNS Server
set system name-server 2001:470:20::2 #Tunnelbroker DNS Server

View File

@ -48,7 +48,15 @@ Now we are able to setup the tunnel interface.
:language: none
:lines: 1-5
Setup the ipv6 default route to the tunnel interface
.. note:: The `source-address` is the Tunnelbroker client IPv4
address or if there is NAT the current WAN interface address.
If `source-address` is dynamic, the tunnel will cease working once
the address changes. To avoid having to manually update
`source-address` each time the dynamic IP changes, an address of
'0.0.0.0' can be specified.
Setup the IPv6 default route to the tunnel interface
.. literalinclude:: _include/vyos-wan_tun0.conf
:language: none
@ -204,4 +212,5 @@ instead of `set firewall name NAME`, you would use `set firewall ipv6-name
NAME`.
Similarly, to attach the firewall, you would use `set interfaces ethernet eth0
firewall in ipv6-name` or `et firewall zone LOCAL from WAN firewall ipv6-name`.
firewall in ipv6-name` or `set firewall zone LOCAL from WAN firewall
ipv6-name`.