MadaMada

@madamada@snac.void.my

SysAdmin with a simple life..interested in FOSS, FreeBSD, Linux, IPv6, cloud stuff and whatever things that come along the way I find interesting..
JabberIDmadamada@xpath.my
Matrix@madamada:matrix.org
Emailmada@void.my
Webhttps://buster.xpath.my
Geminigemini://warlock.xpath.my
TheFediPeoplehttps://fediverse.info/explore/people
Yggdrasilhttps://yggdrasil-network.github.io/
1 ★ 0 ↺

[?]MadaMada ยป
@madamada@snac.void.my

@subnetspider@bsd.cafe NKP is basically a GUA NAT64 prefix, if you don't have one then pick one from nat64.net..

You setup rc.conf as usual, on the Tayga side, they use a different address under the same IPv6 subnet..

Update:
On the firewall, pass quick on clat0 all or check with tcpdump..

During my tests, I disabled the firewall just to rule out if there was an issue, the firewall isn't at fault and something else was..

    ...

    [?]subnetspider ยป
    @subnetspider@mastodon.bsd.cafe

    @madamada Oh wait, I think I know what I've done wrong - Tayga is only converting IPv4 to IPv6 here, I still have to convert it back to IPv4 on with NAT64 the router / firewall... ๐Ÿคฆโ€โ™‚๏ธ (because CLAT = NAT46)

      ...
      0 ★ 0 ↺

      [?]MadaMada ยป
      @madamada@snac.void.my

      @subnetspider@bsd.cafe Yeah CLAT is a one way trip out to accessing IPv4-only sites..

      It assumes you already have a local NAT64 in place which makes things a little easier to set up..

        History