[nycbug-talk] [Fwd: tunnel help request]

nikolai nikolai at fetissov.org
Tue Oct 30 11:53:27 EDT 2007


Need some help here :)
Thinking that following Gene's v6 guide would be good
Sunday afternoon fun I registered a tunnel with HE.
2001:470:1f06:ad::2 is my end of the tunnel,
2001:470:1f07:ad/64 is my assigned ip space.
No luck so far though.
My router is OpenBSD-current, here's the config:

~$ cat /etc/hostname.gif0
up giftunnel
up inet6 2001:470:1f06:ad::2 2001:470:1f06:ad::1 prefixlen 128
!route -n add -inet6 default 2001:470:1f06:ad::1

Gene's pdf says prefixlen 64 for gif, which I think is wrong -
it should be 128 for the tunnel.

~$ ifconfig gif0
gif0: flags=8051<UP,POINTOPOINT,RUNNING,MULTICAST> mtu 1280
        groups: gif
        physical address inet -->
        inet6 fe80::2c0:a8ff:fefd:2a69%gif0 ->  prefixlen 64 scopeid 0x6
        inet6 2001:470:1f06:ad::2 -> 2001:470:1f06:ad::1 prefixlen 128

External interface:
~$ ifconfig fxp0
        lladdr 00:c0:a8:fd:2a:69
        groups: egress
        media: Ethernet autoselect (100baseTX full-duplex)
        status: active
        inet6 fe80::2c0:a8ff:fefd:2a69%fxp0 prefixlen 64 scopeid 0x1
        inet netmask 0xfffff000 broadcast

Internal interface:
~$ ifconfig re0
        lladdr 00:0e:2e:a9:0d:11
        media: Ethernet autoselect (100baseTX full-duplex,rxpause,txpause)
status: active
        inet netmask 0xffffff00 broadcast
        inet6 fe80::20e:2eff:fea9:d11%re0 prefixlen 64 scopeid 0x2
        inet6 2001:470:1f07:ad::1 prefixlen 64

As far as I can see PF is not in the way.

I can't ping anything through the tunnel. I see encap packets
leaving external interface, but see no replies. When trying pinging
my end of the tunnel from their web interface, again 100% packet loss.
If this is relevant, my ISP is Cablevision in Connecticut.

Have I missed anything?
Would appreciate any hints.
Thank you.

