OpenWrt Forum Archive

Topic: Config IPV6 Passthrough LAN only, Or Block Wan IPV6?

The content of this topic has been archived on 7 May 2018. There are no obvious gaps in this topic, but there may still be some posts missing at the end.

How do you guys prevent IPV6 leaks to internet, without disabling local peers using it.

Asus firmware has a solution called IPV6 Pass through only. It allowed ipv6 home network to talk.

[Using VPN softare blocks or disable IPV6 not an option. They f up homegroup]
-------------------------------------------------------------------
1. Config firewall zone settings?
2. or, traffic rules?
3. other configs I can do via LuCI?

--Thanks

(Last edited by j808 on 31 May 2017, 04:05)

What do you mean by "IPV6 leaks" exactly? Default configuration does not route incoming IPV6 traffic to local nodes.

I believe j808 is talking about the fact that he is using an IPv4-only VPN service, and when a host is resolved to an IPv6 address, the client makes a connection to the internet directly rather than via the VPN tunnel.

The real solution is to use a VPN service which supports IPv6, since OpenVPN already supports IPv6. However, OpenVPN will _not_ translate IPv6 to IPv4 (one would need something like NAT64 for that).

The discussion might have continued from here.