@kccoyote Ik heb de settings via de CLI ingegeven met volgende commands: (google was very friendly to me 😂 ) De # zijn eigen nota's en dienen niet ingegeven te worden. Deze zijn ingegeven op een basis out of the box config van de mikrotik. # setup IPV6: /ipv6 nd set [ find default=yes ] disabled=yes /ipv6 dhcp-client add add-default-route=yes interface=ether1 pool-name=general-pool6 request=prefix print # nu Zou je de ipv6 prefix moeten zien toegewezen door TLn aan je router #set fixedipv6 :1 to router itself: /ipv6 address add address=::1 from-pool=general-pool6 interface=bridge advertise=yes #set anouncement to internal devices: /ipv6 nd add interface=bridge ra-interval=20s-60s #Basic Firewall setup voor IPV6: /ipv6 firewall filter add chain=input action=drop connection-state=invalid comment="Drop (invalid)" add chain=input action=accept connection-state=established,related comment="Accept (established, related)" add chain=input action=accept in-interface=ether1 protocol=udp src-port=547 limit=10,20:packet comment="Accept DHCP (10/sec)" add chain=input action=drop in-interface=ether1 protocol=udp src-port=547 comment="Drop DHCP (>10/sec)" add chain=input action=accept in-interface=ether1 protocol=icmpv6 limit=10,20:packet comment="Accept external ICMP (10/sec)" add chain=input action=drop in-interface=ether1 protocol=icmpv6 comment="Drop external ICMP (>10/sec)" add chain=input action=accept in-interface=!ether1 protocol=icmpv6 comment="Accept internal ICMP" add chain=input action=drop in-interface=ether1 comment="Drop external" add chain=input action=reject comment="Reject everything else" add chain=output action=accept comment="Accept all" add chain=forward action=drop connection-state=invalid comment="Drop (invalid)" add chain=forward action=accept connection-state=established,related comment="Accept (established, related)" add chain=forward action=accept in-interface=ether1 protocol=icmpv6 limit=20,50:packet comment="Accept external ICMP (20/sec)" add chain=forward action=drop in-interface=ether1 protocol=icmpv6 comment="Drop external ICMP (>20/sec)" add chain=forward action=accept in-interface=!ether1 comment="Accept internal" add chain=forward action=accept out-interface=ether1 comment="Accept outgoing" add chain=forward action=drop in-interface=ether1 comment="Drop external" add chain=forward action=reject comment="Reject everything else" @NofanTasi Als ik deze avond wat tijd heb zal ik zon pakketje uitzoeken.
... Meer weergeven