!DBFhtjpqmJNENpLDOv:nixos.org

NixOS systemd

600 Members
NixOS ❤️ systemd165 Servers

Load older messages


SenderMessageTime
6 Oct 2024
@arianvp:matrix.orgArianIf you don't have your router in bridge mode you simply just have a /64 and all the devices assign ip addresses through SLAAC09:58:09
@arianvp:matrix.orgArian* This is not fully correct. It's /56 for your modem /64 for your router in residential areas09:58:26
@arianvp:matrix.orgArianIirc 09:58:46
@jeroen:simonetti.nljeroen left the room.10:21:04
@steveej0:matrix.orgsteveej
In reply to @arianvp:matrix.org
If you don't have your router in bridge mode you simply just have a /64 and all the devices assign ip addresses through SLAAC
this sounds like what i'm seeing. i'm still not sure whether prefix delegation is happening at all behind my ISP router
10:48:12
@arianvp:matrix.orgArianYeh so figure out if you can put your ISP router in bridge mode10:54:38
@arianvp:matrix.orgArianIf you can then you can usually request larger prefixes with DHCPv610:54:57
@arianvp:matrix.orgArianIt's usually possible10:55:23
@arianvp:matrix.orgArian(or get your own modem if they allow it)10:55:32
@steveej0:matrix.orgsteveej Arian: do you know if systemd-networkd can be configured to emit prefix delegation request logs? i'm curious if my ISPs router answers these at all. 11:13:15
@arianvp:matrix.orgArianMaybe if you set the log level to debug11:25:57
@arianvp:matrix.orgArianOtherwise I'd Wireshark it11:26:21
@rvdp:infosec.exchangeRamses 🇵🇸It does when you set the log level to debug12:22:46
@rvdp:infosec.exchangeRamses 🇵🇸But of you're behind another router, then I'm pretty sure you won't get this to work12:23:12
@rvdp:infosec.exchangeRamses 🇵🇸* But if you're behind another router, then I'm pretty sure you won't get this to work12:23:37
@rvdp:infosec.exchangeRamses 🇵🇸 You might also need to set WithoutRA = "solicit"; in the dhcpv6 config to ask explicitly for a prefix, when you're not being offered one by default 12:26:12
@rvdp:infosec.exchangeRamses 🇵🇸 Also, you won't see the prefix in ip a, you'd see two GUA /64 addresses, one is the one obtained via slaac, and the other one is the range that the router assigned to itself from the delegated prefix 12:33:10
@rvdp:infosec.exchangeRamses 🇵🇸There's a lot of networkd options that control all of this though, and some of them imply certain default values for others, so it can get a bit complicated12:34:26
@rvdp:infosec.exchangeRamses 🇵🇸
In reply to @rvdp:infosec.exchange
Also, you won't see the prefix in ip a, you'd see two GUA /64 addresses, one is the one obtained via slaac, and the other one is the range that the router assigned to itself from the delegated prefix
And then most probably you'd see for each of those /64s at least two addresses, one stable one and one temporary one, and possibly additional deprecated ones
12:36:16
@rvdp:infosec.exchangeRamses 🇵🇸
In reply to @rvdp:infosec.exchange
Also, you won't see the prefix in ip a, you'd see two GUA /64 addresses, one is the one obtained via slaac, and the other one is the range that the router assigned to itself from the delegated prefix
This is on your WAN interface, BTW. On the LAN side you'll only see a /64 from the delegated prefix
12:42:25
@rvdp:infosec.exchangeRamses 🇵🇸Probably this is not actually the right room for this12:48:38
@arianvp:matrix.orgArianYeh let's move to offtopic if you need more help12:52:24
@arianvp:matrix.orgArian It's a bit awkward that the final image for verity images is now config.system.build.finalImage instead of config.system.build.image 14:59:59
@arianvp:matrix.orgArianWish nixos module system worked more like overlays....15:00:41
@sofo:matrix.org@sofo:matrix.org left the room.15:24:39
@elvishjerricco:matrix.orgElvishJerricco Arian: So I was looking at https://github.com/NixOS/nixpkgs/pull/345899 and it reminded me again that I'd really like to figure out how to get PID 1 == systemd for non-initrd cases. As far as I'm aware, this is pretty much exclusively containers, is it not? 18:43:32
@k900:0upti.meK900WSL ecks dee18:44:02
@elvishjerricco:matrix.orgElvishJerriccohm...18:44:15
@k900:0upti.meK900It's fine actually18:44:28
@k900:0upti.meK900systemd is PID1 on WSL18:44:34

Show newer messages


Back to Room ListRoom Version: 6