IPv6 Over OpenBSD 69
darkuncle writes: "While doing some research into setting up an OpenBSD box as a firewall/NAT box/DHCP server for my home network, I ran across a cool writeup at 2600 Australia about how to implement IPv6 on OpenBSD. For anybody that's been thinking about exploring IPv6, this article (along with the FAQ linked above) provides some good starting points. "
Re:We're on a 128k ISDN link... (Score:1)
The doco is now coming from the co-lo box....
Thanks for the hits - we never expected to the see the doco on Slashdot...
Dogcow
2600 Australia
Other Sources? (Score:1)
Current Trends (Score:1)
An analysis of current trends indicates that ipv6 will be obsolete before it is completed.
It will then be necessessary to skip ipv7 because that is the stylish thing to do these days.
Work will then begin in ernest on ipv8.
We're on a 128k ISDN link... (Score:1)
Please bear with us if the download of the openbsd-ipv6.html document is a tad slow.. Although we're on a 128k link and although I've got Apache 302'ing some of you to our co-lo box (which is on FDDI to the backbone) it doesn't seem to be working 100% of the time for all browsers...
Dogcow
2600 Australia
The truth about IPv8 naming. (Score:1)
An "OpenSource" group (yes, OpenSource -- even if OpenSource has nothing to do with a topic, it wouldn't be
An analysis of current trends indicates that us BSD users will, however, continue to use IPv6 without problems, and will laugh with insane glee at the users of non-IPv6 compliant OS'es.
jason
*returns to OpenBSD box, striking ph33-ur into the hearts of Mandrake-using sKr1pt k1ddi3z everywhere*
Subaru ipV6 (Score:1)
itsa pieceofshit.
:)
Re:I wonder how long... (Score:1)
j.
doesn't have to be forced (Score:1)
IPv6.net [ipv6.net]
IPv6.com [ipv6.com]
All of those pages have a good number of links to sites that will provide detailed explanations of the issues involved here.
Interop iLabs (Score:1)
Re:Other Sources? (Score:1)
If you want the low-down information, the obvious thing to do is check out the RFCs. Here are several that I have found interesting:
These documents barely scratch the surface, but they're interesting and they have splendid references. :-) For random RFCs, go to http://www.ietf.org/rfc/rfc####.txt, where #### is, obviously, the RFC number. Happy reading...
Re:Good job for OpenBSD (Score:1)
The Misc list is the best place for those questions - and you will still run into crotchety people there too, but you will get friendly people too. Personalities differ. I get the same results no matter where I go in real life or on the computer.
Sorry to hear your experience wasen't so positive.
Re:IPv6 - a thought (Score:1)
First we need the distribution providers to start turning on IPv6 support. I've managed to setup a RedHat box to do IPv6, but it required redoing the kernel, manually patching a couple of packages, and replaing quite a few other packages. Your average user just isn't ready for this yet.
Let me throw a few links at anyone who wants to try setting up IPv6 on their box. Be careful, you can really foul up a machine doing this wrong.
Instead of doing a IPv6 use day, we need an IPv6 lobbying day. Get your distribution provider to compile IPv6 support in to the default kernel (at least as a module), and start including the IPv6 packages and scripts with their installation.
FreeBSD ditto (Score:1)
Re:Other Sources? (Score:1)
Yes, that is exactly the point. I used to feel "bad" about looking at their reviews and never buying from Amazon (because of pricing and shipping times). Now, thanks to the boycott, I can do the same thing and feel that, morally, it is the right thing to do.
Aside from that, the original poster did have a point. Whenever linking to Amazon, one should remind others of the boycott.
FreeBSD has built in support. (Score:1)
Re:BSD Differences (Score:1)
The major pain in the ass was the naming scheme for partitions. Also, it seemed that none of these OS's was able to mount the partitions of every other one in read/write mode.
After a while, I finally understood that, although it was geeky and fun, having six OS's on the same machine was a rather pointless waste of disk space...
better way to share your decss source and stuff (Score:1)
Just a thought.
Does /. have an IPv6 address? Does Wired? (Score:1)
That's great that OpenBSD has IPv6 support, and it looks like it has for some time. But the simple fact of the matter is that IPv6 isn't going to take off until people start actually USING it. Are there *any* non-research sites hooked up to the 6Bone? If the leaders (term used loosely) on the Net--such as /., Wired, Salon, Ars Technica, etc.--began using it and advertising the fact that they were we'd start to see more usage and interest. And let's face it folks: MS ain't gonna commit resources to IPv6 until they see demand for it, and it ain't *really* gonna take off until they do. But in the meantime, some of the movers and shakers in the dubya-dubya-dubya world CAN do things to promote it.
So to all you sysops out there: Please do so. PLEASE.
-Rev.Re:IPv6 - a thought (Score:1)
Two years is extremely slow in the computer age ....
Re:Current Trends (Score:1)
Re:2600 article too verbose - concise version here (Score:1)
:>
Re:More problems for BSD (Score:1)
Just fork off!
whoever thought of (Score:1)
Demo of IPv6 (Score:1)
uh.. the article is _about_ freenet6.. (Score:1)
Re:Good job for OpenBSD (Score:1)
Also, it also should be noted that softupdates technology is available on FreeBSD for quite some time now. Softupdates eliminate synchronous metadata updates while providing the same level of fault-tolerance. You really should have tried turning softupdates while doing your benchmarking because without them you are comparing apples and oranges and your claim about Linux having better performance is totally unfounded.
look at the end result (Score:1)
http://tlug.linux.or.jp/rms.html
Linux faster (Score:1)
My Subaru (Score:1)
tcd004
Re:Other Sources? (Score:1)
I prefer to reserve the word evil to actual instances of moral reprehensibility.
That said, how do I do anything but harm Amazon
if I use their servers to search for books but never buy from them?
Anomalous: inconsistent with or deviating from what is usual, normal, or expected
I wonder how long... (Score:1)
Here at Penn State we hve Internet2, it's rather interesting to use and very exciting in development... However, I wonder if all the older, more loved, software is going to be compatible with ipv6. I can possibly see a wrapper being setup for it...
Re:Good job for OpenBSD (Score:1)
I had mixed results. I couldn't get the NE2000 cards to work very well, apparently there are some issues with ne2000 cards.
The packet forwarding worked ok but I didn't find much support for stuff that doesn't work well with masq out of the box (ala ip_masq_ftp, ip_masq_irc, etc).
What really put me off was the hostile attitude I got when I posted newbie questions on one of the newsgroups (think it was openbsd.tech). You know, I know how to search deja and look for faq's and RTFM and I din't think my question was inappropriate, but man did I get a lot of grief. Probably got 3 flames for every helpful reply. Who needs that?
So instead I went and installed slack and decided I would put off another *BSD adventure for another day.
Re:Other Sources? (Score:1)
Re:BSD Differences (Score:1)
BSD Differences (Score:1)
I am fairly new to the Unix world and don't have many answers
Re:BSD Differences (Score:1)
NEW STANDARD (Score:1)
Re:More problems for BSD (Score:1)
"Denial, it's not just a river in Egypt..."
Give me a break. Style over substance? I think so. This is emotionally loaded bull shit that doesn't say or mean much.
Re:More problems for BSD (Score:1)
This means absolutely nothing. What strife in FreeBSD? Strife in NetBSD and OpenBSD? The event you talk about is long gone. Maybe you should write a message fear mongering about Torvalds and Tannenbaum arguing.
"But in reading his email he obviously has a problem with taking any criticism, and had no problem with jumping down someone's throat with a flamethrower and foul language. Denial, its not just a river in Egypt... "
Heh, moron. What does this have to do with anything? Oh, and I love the stupid platitudes.
"It just seems that *BSD has an extra heaping helping of bad attitudes that make commercial vendors look like pikers"
Evidence? Lies..
"If you *really* read that email thread, you would see the attitude loud and clear. "We don't think that it helps anything for you to tell someone he's a f**khead when he's posting a message trying to help with the OS development." "F**K YOU, *I* want control of the source and if you don't like it I'll fork my own off!"'
This is relevant to anything, how? Emotionally loaded style over substance garbage.
"The split had nothing to do with the quality of his coding work, and everything to do with his nasty attitude towards people... and NOT just the people of NetBSD Core, but other people who were just civilians trying to help out, or looking for help. No wonder BSD is dying. "
Well, you sure get extra points for posting a replica copy of a couple of year old message. Isn't it weird that your prophecy hasn't come true?
I'd like a reply -- or are you too stupid to come up with original work?
Re:interesting. (Score:1)
IPv6 and the end of privacy (Score:2)
All they have to do is to mandate that all U.S. routers use IPv6, keep full logs of all connections, and make these logs accessible at will, in real time.
In the past, people didn't believe that this would come to pass. Unfortunately, there are two key reasons why this will now happen. The first is the existing example of the phone companies, who were mandated by Congress to implement wiretapping of digital technology. They balked at the cost, until Congress last year gave them a few hundred million of our tax dollars to shut up and implement it.
The ISPs will balk too; until they're given enough cash to do it. A Billion dollars would certainly smooth over a lot of ruffled feathers, and probably get them chomping at the bit for a piece of that action.
And second, technology keeps getting more powerful and cheaper every year. It's only a matter of time now before realtime tracking is putforward by the FBI to assist with "protecting" us from Terrorists, Child Porn, Drugs, and what not.
Sure wish someone would protect us from the thugs at the FBI.
Actually, with this "feature", market research companies could use this to keep track of your viewing habits like never before. And pay the ISPs for this information. This is a revenue generating product for the company which buys into it; the amount needed for funding the right lobbiests to get this law passed is chicken feed.
And given that some Cisco employees had the gaul to stand up at a recent IETF and announce that they'd be implementing a wiretapping protocol for the FBI (and the IETF could go to hell), you can bet Cisco would jump at the chance to screw your privacy any way they could.
How silly the fools who created the IPv6 standard now seem. Unless this was their original intention; and it's hard to believe that they were complete idiots and missed all of this.
Re:OpenBSD Pariah (Score:2)
Great developers are *NOT* generally known for their highly refined people skills. Let them call it as they see it, and if you should become offended, well... then your propensity to become easily offended is a problem you should address. Perhaps you never witnessed a "spontaneous expression of strong feelings" from Linus Torvalds? Eric Raymond? Richard Stallman? even (gasp) Bill Gates?
In the final analysis, the only measurement that counts is the results achieved. All we should ask of Theo (and every other developer of leading/bleeding edge work) is that he "keep on keeping on". The world needs more egotists just like him! There are enough sheep/lemmings/whatever in the world.
Henry David Thoreau (1817-1862) once said: I find it wholesome to be alone the greater part of the time. To be in a company (corporation?), even with the best, is soon wearisome and dissipating. I love to be alone. I never found a companion that was so companionable as solitude.
I suspect that Henry David Thoreau and operating system developers have much in common.
More headaches for Moderators (Score:2)
Please! This drivel about *BSD has nothing to do with IPv6, or even OpenBSD. It's a fight over who said what to whom, when, how, why, and whether the cow delivered a three-headed calf afterwards.
If you want to fight about BSD, become one of those showman wrestlers on TV, or a professional boxer. Who knows? It might even make you rich. You might still be a dork, but you'll be a rich dork, rather than a rather bland, boring one.
Re:IPv6 - a thought (Score:2)
Of course, there's nothing to stop an ISP from installing GateD 3.6-ipv6, MRT or Zebra in the meantime, and tunnel to the 6bone. Don't see many ISPs doing this, though. Maybe I'm just being cynical, but ISPs are not doing that much to encourage router companies to bring out the goods. Threats of taking their business elsewhere would do it, and probably would save the ISPs money in the process. Cisco knows all this, but it doesn't worry them, as the ISPs are preferring to stay dormant.
Re:IPv6 - a thought (Score:2)
Oof. Actually many ISPs do really really want to switch to IPv6. ISPs hate people who spoof ips just like everyone else.
There are several things blocking the path to IPv6. One of the major things that is blocking the movement to IPv6 is lack of support in Switches and Routers. Hell, all of Cisco's releaces of IOS that are IPv6 compliant are all Beta. Now would you like to sign up with an ISP who's uptime is far short of 99.99%?
IPv6 is comming and it is comming fast. I figure it'll be about 2 years before most top level providers start implementing it.
Re:IPv6 and the end of privacy (Score:2)
Why use IPv6 (Score:2)
There's a little more to it than that. IPv6 has a much bigger address space - which won't affect you directly - and also has much-enhanced security features and the ability to set up links with predictable real-time performance (IOW it's ideal for Quake).
--
Good job for OpenBSD (Score:2)
While my experience is that Linux is faster than BSD, that shouldn't be an issue here.
The only part of this that isn't obvious is why to use IPv6. Actually, that's obvious, too--it's fun to play with new things.
Re:Good job for OpenBSD (Score:2)
However, in one case where the application was kernel compilation (cross-compilers for another architecture, mostly gcc and friends), about a year ago, we found Linux was 10-15% faster on a single processor. I think that was FreeBSD 2.8. I know the version numbers have change a lot since then, I don't know if the performance numbers have similarly change.
Re:Other Sources? (Score:2)
Sorry, but no go. Amazon has the biggest selection of books and a score of helpful reviews with each one.
Hint: You don't have to pay for the searches, and you're not required to buy the books.
This isn't about freebsd. (Score:2)
---
ftpd (Score:2)
I'm the maintainer of (one of) the Linux port [eleves.ens.fr] of the ftpd from OpenBSD. Since version 0.3.0 (of my port, taken from OpenBSD 2.7) it has had IPv6 support (this has been a pain to port, as a matter of fact).
(I'm still a bit short of confirmations that the IPv6 part works correctly. It would be nice if more people with IPv6 connectivity could try it out and tell me.)
Also check out my "sock" [quatramaran.ens.fr] program (instructions for use: see comments at the start of the source) for an IPv6-aware equivalent of netcat/socket that uses the spiffy getaddrinfo() function from libc.
Besides this, I think Linux is still wanting in IPv6-aware tools. Now that the kernel supports it and the libc supports it, I think all distributions could afford to ship with a fully IPv6-aware environment. Not having ping6 and all by default is rather ridiculous.
This is actually a great idea & Gnutella/IPv6? (Score:2)
It seems to me that historically it has been the "underground" that has utilized cutting-edge technologies first. BBS's first became popular (at least among the people I hung out with) whenever you could trade warez and txt files. The internet was popular with geeks and Phrack types way before .com mania shook the world, and John Carmack is definately not mainstream. All of these examples show that the edges are where innovation and application of new technologies takes place.
So I vote "yay" to implementing some sort of pseudo-proprietary net using IPv6, expecially IPsec just to piss of the MPAA attorneys. Could Gnutella be ported to IPv6?
IPV6 has been available for FreeBSD for years... (Score:2)
FreeBSD has had IPV6 support for several years now. It was an option with FreeBSD 3.x and ships by default with 4.0.
Substantial development of IPV6 and IPSEC were actively developed under FreeBSD versions as far back as 2.x
It's too bad the IPV6 deployment will remain stunted (we won't see ISPs rolling out support) until M$ decides to implement it in their operating systems...
-p.
Re:Does /. have an IPv6 address? Does Wired? (Score:2)
MS ain't gonna commit resources to IPv6 until they see demand for it, and it ain't *really* gonna take off until they do.
Have fun making things up?...seeing as it's about Microsoft and how evil they are, you'll probably get moderated up as 'insightful'.
Technical (Public) Beta [microsoft.com]
Direct from Microsoft's research group working on ipv6 [microsoft.com]
Re:BSD Differences (Score:2)
Yes, it is much better to have six different machines...
BSD section is red (Score:2)
FreeBSD 4.0 ships with IPV6 support (Score:2)
Re:Good job for OpenBSD (Score:2)
Does anyone have any benchmarks, or is this just a passed on rumor that everyone seems to believe?
I have a debian and freebsd 3.4 box right on this desktop, and I notice nill difference in speed. I can even use linux threads on the bsd box.
IMO, the only thing to scream about is SMP performance. I wonder what the SMP:SMP performance mentioned ratio is.
More OpenBSD IPv6 Resources (Score:2)
There are more OpenBSD IPv6 stacks.
One is the KAME IPv6 project [kame.net] wich is a stack for FreeBSD/NetBSD/BSD/OS.
Another IPv6 stack for FreeBSd/NetBSD is made by INRIA IPv6 [inria.fr].
Another interesting site is the Alternate Queueing (ALTQ) [sony.co.jp] for queue and bandwidth management use under *BSDs.
And once you got this all working, why not play with OpenBSD and PGPnet [allard.nu] VPN support.
Erik
Re:BSD Differences (Score:3)
FreeBSD: most popular. Wants to be the best for x86. Until reciently didn't care at all about any other platform. Still doesn't care much. Probably the best choice though if your system is x86
NetBSD: try to run on all useful platforms. If it is a comptuer netBSD wants to run on it. An excellent choice if you have many different comptuers with different strenghts. They all look the same from an admin point of view.
OpenBSD: orginally netBSD+, but not different enough. Doesn't care as much about portability (but has more supported platforms then freeBSD and can probably support all of netBSD's platforms with a little work) Wants to be the most secure OS possibal, and in fact it has been years since someone found a remotly exploitable security hole in default install. (You can of course configure it to be insecure.) Best choice if your not sure who will be attacking your system. (The others react quickly to problems, openBSD tends to proactivly avoid them)
However despite the above, the *BSDs are not much different. Pick one. Theo and his openBSD deservies a lot of criticism, but nobody will claim that openBSD is not technically excellent in their area. I should note too that most of openBSD's changes have filtered back into freeBSD and netBSD over time. I'm sure that linux devolpers have looked them over too. And of course it runs in the other way.
The best thing to do is have an infiniate amount of machines and time, so that you can run all 3 *BSDs, every linux distribution, and whatever else you can get your hand on. Then decide for yourself.
Re:Other Sources? (Score:3)
You can also check out:
These are routers with support for IPv6 routing protocols, such as RIPng, OSPFv6 and BGP4+. (For GateD, you want the GateD 3.6-ipv6 snapshot.)
Last, but by no means least, there's a wealth of information at the "principle" IPv6 sites:
Cut 'n Paste hate BSD politics too.. (Score:3)
In reality its been cut 'n pasted so many times its beyond belief. Someone really has it out for *BSD.
There are few worthy projects out there that DO NOT have interesting characters and wild political battles. Please take into consideration the technical merits of these operating systems, and remember that some people hate *BSDs for political reasons that are just as lowly as the not so nice stuff that goes on in the OS battles.
Re:Other Sources? (Score:3)
Well, then you haven't been doing your homework. A quick search at amazon shows a couple of books of interest, like this:
Okay fine, but what about us non-BSD Users? (Score:3)
Caveat: as I am only a Linux user at home and stuck on WinNT at work, and have not even tried connecting to a 6 bone yet or doing IPv6 tunneling with IPv4, I can't vouch for how well the instructions work, but they look right, AFAICT.
IPv6 - a thought (Score:4)
I would like to propose an IPv6 day, in which all Slashdot readers sign up with an IPv6 tunnel provider and spend the day -just- using IPv6.
Whilst it might have absolutely no effect on outside opinion, it might give IPv6 a much-needed injection of interest. And that might pave the way for IPv6 to move out of obscurity and into general awareness.
If there is interest in this idea, I'd like to propose June 4th as our own Independence Day. In this case, independence from IPv4.
Info on IPv6... (Score:4)
Ipv6 : The Next Generation Internet Protocol Stewart S. Miller; Paperback
IP Addressing & Subnetting Including IPv6 Syngress Media; Paperback
Ipv6 Networks Marcus Goncalves, Kitty Niles; Paperback
And of course IPv6.org [ipv6.org] is an excellent source of info on the next generation for the internet.
Its already here as a networking technology and for many areas its increased security model enables things that couldn't previously be done. Big privacy question marks over it though.
IPv6 == Socialism at its worst (Score:5)
Yes folks, you read it here first on Slashdot. OpenBSD, a Canadian operating system written by Theo deRaadt while he was a grad student in Finland, is officially supporting the IPv6 so-called "standard". I ask you, what is wrong with the current IPv4 implementation? Our fine, American protocols have dragged this network out of a mess of ivory towers and into the lives of all hard-working people around the world. And no these "hackers" want to just up and destroy it, replacing it with some insiduous software developed in Japan, which has already brought about the total degredation of American youth through the Satanic influences of its "Pokemon" cult. Have we forgotten December 7th, 1941, "A day that will live in infamy", my friends?
So what, you might be asking yourself, is so special about IPv6 that these Canadians and Japanese would be investing so much time in it? Let me tell you. In IPv4, there are only a few IP addresses to go around, and this creates the supply and demand reactions that fuel the machines of Capitalism. Not everyone can have one, and certainly few can hold on to them forever. But in this new system, the range of addresses in increased exponentially: everyone will be forced to have one by the government. You thought social security, FDR's plot to control the citizens by reducing them to numbers, was bad? Wait till the government outlaws naming children with good, Christian names. That's right folks, if those fat cats in Washington have their way, your next child may well be designated, by the government, as being "3ffe:b00:c18:1fff:0:0:0:2d9". Try singing those sweet lullabies to children with that name. No doubt it will inspire many normally-godfearing women to murder their unborn children at the slaughtering "clinics", which is what liberals, with their hatred of all that is human, really want.
And don't think that you'll walk away scot-free either. You're new, government-assigned IP address will be used to identify you on the new government work farms. Think you like your cushy job as a Visual Basic programmer? Wait till Washington has you picking tomatoes on a desert farm in Mexico. I've never been wrong before, folks, so I know I'm right this time. IPv6 is a tool of the Illuminati, and it's branch organizaions like the Jewish Banking Interests and the Democratic Party, to control the hearts and minds of decent, Christian Americans. Don't let these Japanese "researchers", or their partner in crime, Theo deRaadt, infiltrate into your network. America's future depends on it.
you forgot winBSD (Score:5)
Some people claim that MS can't produce a stable operating sytem, but winBSD is the ultimate in stability. Once you manage to boot winBSD (inexplicably, there is no official option to boot directly into it, but there are many ways to start it), it will run forever, disregarding anything short of a power outage.
Some may complain that there is no software for winBSD, but people make the same complaint about Linux, and the same answer applies: that doesn't make the OS bad. You can already enjoy such entertaining games as "Swear at the Screen" and "Ignore all Inputs". So start developing for winBSD today!