Re: Is there a way to stop ipv6 leakage without turning off ipv6?

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On 4/2/17 8:22 AM, Ed Greshko wrote:
On 04/01/17 21:42, William Oliver wrote:
I'm using Fedora 25 on an HP laptop with KDE.  I commonly use a VPN
service, but it leaks ipv6 addresses.  This seems to be a common
problem with VPN and ipv6, from what I've read on the internet.

So, I've turned off ipv6 for my wireless interface, and that seems to
solve the problem.  However, I just can't help but think that this will
eventually cause a problem somewhere.

Is there a better solution for ipv6 leakage with a vpn on Fedora 25
other than just turning it off?
Do you use IPv6 via your ISP or a tunnel under non-VPN situations?  How
many network interfaces do you have?

I thought that by a leak it is meant that when you're connected to a VPN
and you'd want all traffic to go via the VPN and your VPN provider
doesn't concurrently support IPv4 and IPv6 (I don't know one that does)
there may be cases when you make a DNS request you get the IPv6 address
of the site and thus your traffic doesn't go via the VPN.
Hi Ed, just as a side issue to this, because my ISP (I don't know about my VPN provider) IPv6 at all for anything, I was setting IPv6 to 'ignore' via Networkmanager in KDE (Gnome doesn't seem to have the same options) but that was causing messages in the logs at boot time about IPv6 not being ready. How do we stop the network from attempting to activate IPv6 and then producing these messages when it has been turned off?

regards,
Steve

All the suggestions I've seen are to disable IPv6 while using a VPN.
This would be easy if you use a script to start the VPN.  Or you could
run a script prior to connecting using NetworkManager.  The script would
simply....

echo "1" > /proc/sys/net/ipv6/conf/(interface name)/disable_ipv6   for
each interface on the system.

_______________________________________________
users mailing list -- users@xxxxxxxxxxxxxxxxxxxxxxx
To unsubscribe send an email to users-leave@xxxxxxxxxxxxxxxxxxxxxxx



[Index of Archives]     [Older Fedora Users]     [Fedora Announce]     [Fedora Package Announce]     [EPEL Announce]     [EPEL Devel]     [Fedora Magazine]     [Fedora Summer Coding]     [Fedora Laptop]     [Fedora Cloud]     [Fedora Advisory Board]     [Fedora Education]     [Fedora Security]     [Fedora Scitech]     [Fedora Robotics]     [Fedora Infrastructure]     [Fedora Websites]     [Anaconda Devel]     [Fedora Devel Java]     [Fedora Desktop]     [Fedora Fonts]     [Fedora Marketing]     [Fedora Management Tools]     [Fedora Mentors]     [Fedora Package Review]     [Fedora R Devel]     [Fedora PHP Devel]     [Kickstart]     [Fedora Music]     [Fedora Packaging]     [Fedora SELinux]     [Fedora Legal]     [Fedora Kernel]     [Fedora OCaml]     [Coolkey]     [Virtualization Tools]     [ET Management Tools]     [Yum Users]     [Yosemite News]     [Gnome Users]     [KDE Users]     [Fedora Art]     [Fedora Docs]     [Fedora Sparc]     [Libvirt Users]     [Fedora ARM]

  Powered by Linux