---- Date : 20240226 Info : https://www.debian-fr.org/t/network-ipv6-ipsec-strongswan-modern-security-communication/89528 ### FR.LAB3W.DC (France/Alpes) Je configure la machine serveur "domain controller" Ici c'est chez moi à mon domicile. J'ai plusieurs machines sur différents réseaux de machines, de tablettes, de smartphones etc. #### VMBR0 <-> LAN/WAN ``` //----------------------- // VMBR0 <-> LAN/WAN //--------- // IP Address (addr unique locale magic) : fc01:0000:0000:0000:0000:0000:0000:0253/16 // network range : fc01:0000:0000:0000:0000:0000:0000:0000- fc01:ffff:ffff:ffff:ffff:ffff:ffff:ffff // IP Address (addr unique locale "fc01::") - gateway generale : 2001:cb1d:02d4:88ff:ffff:ffff:ffff:ffff/56 fc01:cb1d:02d4:88ff:ffff:ffff:ffff:ffff/56 // network range : fc01:cb1d:02d4:8800:0000:0000:0000:0000- fc01:cb1d:02d4:88ff:ffff:ffff:ffff:ffff //----------------------- ``` #### VMBR1 <-> VLAN/VSERVERs ``` //----------------------- // VMBR1 <-> VLAN/VSERVERs //--------- // IP Address (addr unicast globale "2001::" / addr unique locale "fc01::") -> VLAN_D2 (a2ff:00ff/96) : 2001:cb1d:02d4:8851:0642:0000:a2ff:00ff/96 fc01:cb1d:02d4:8851:0642:0000:a2ff:00ff/96 // network range : fc01:cb1d:02d4:8850:0000:0000:0000:0000- fc01:cb1d:02d4:885f:ffff:ffff:ffff:ffff //----------------------- ``` ---- ### FR.LAB3W.BW (France/Alpes) Je configure la machine serveur "initiateur" Ici c'est chez moi à mon domicile. J'ai plusieurs machines sur différents réseaux de machines, de tablettes, de smartphones etc. #### VMBR0 <-> LAN/WAN ``` //----------------------- // VMBR0 <-> LAN/WAN //--------- // IP Address (addr unique locale magic) : fc00:0000:0000:0000:0000:0000:0000:0254/16 // network range : fc00:0000:0000:0000:0000:0000:0000:0000- fc00:ffff:ffff:ffff:ffff:ffff:ffff:ffff // IP Address (addr unicast globale "2001::" / addr unique locale "fc01::") : 2001:cb1d:2d4:8850:0642:0000:0000:0254/64 fc01:cb1d:2d4:8850:0642:0000:0000:0254/64 // network range : fc01:cb1d:02d4:8850:0000:0000:0000:0000- fc01:cb1d:02d4:8850:ffff:ffff:ffff:ffff //--------- // IP Address (addr secure wide area) : fec0:0000:0000:0000:0000:0000:0000:0254/16 // network range : fec0:0000:0000:0000:0000:0000:0000:0000- fec0:ffff:ffff:ffff:ffff:ffff:ffff:ffff //--------- ``` #### VMBR1 <-> VLAN/VSERVERs ``` //----------------------- // VMBR1 <-> VLAN/VSERVERs //--------- // IP Address (addr unicast globale "2001::" / addr unique locale "fc01::") -> VLAN_D1 (a1ff:00ff/96) : 2001:cb1d:02d4:8851:0642:0000:a1ff:00ff/96 fc01:cb1d:02d4:8851:0642:0000:a1ff:00ff/96 // network range : fc01:cb1d:02d4:8851:0642:0000:0000:0000- fc01:cb1d:02d4:8851:0642:0000:ffff:ffff //----------------------- ``` ---- ### DE.LAB3W.VPS (Allemagne/Berllin) Ici c'est un VPS (1 seule IPv6 UNICAST GLOBAL). #### VMBR0 <-> LAN/WAN ``` //----------------------- // VMBR0 <-> LAN/WAN //--------- // IP Address (addr unicast globale "2001::/128" : 2001:41d0:701:1100::6530/128 //--------- // IP Address (addr secure wide area) : fec0:0000:0000:0000:0000:0000:0000:0001/16 // network range : fec0:0000:0000:0000:0000:0000:0000:0000- fec0:ffff:ffff:ffff:ffff:ffff:ffff:ffff //--------- // IP Address (addr unicast globale "2001::" / addr unique locale "fc01::") -> VLAN_D1 (a1ff:00ff/96) : fec0:cb1d:02d4:885e:eeee:0642:0000:0254/61 // network range : fec0:cb1d:02d4:8858:0000:0000:0000:0000- fec0:cb1d:02d4:885f:ffff:ffff:ffff:ffff ``` ``` vmbr0: flags=4163 mtu 1500 inet 135.125.133.51 netmask 255.255.255.0 broadcast 135.125.133.255 inet6 fec0::1 prefixlen 16 scopeid 0x40 inet6 fe80::24b2:4ff:fea2:c384 prefixlen 64 scopeid 0x20 inet6 2001:41d0:701:1100::6530 prefixlen 128 scopeid 0x0 ether 26:b2:04:a2:c3:84 txqueuelen 1000 (Ethernet) RX packets 216146041 bytes 93608898294 (87.1 GiB) RX errors 0 dropped 0 overruns 0 frame 0 TX packets 231937862 bytes 48252690945 (44.9 GiB) TX errors 0 dropped 0 overruns 0 carrier 0 collisions 0 ``` #### VMBR1 <-> VLAN/VSERVERs ``` //----------------------- // VMBR1 <-> VLAN/VSERVERs //--------- // IP Address (addr unicast globale "2001::" / addr unique locale "fc01::") -> VLAN_00 (0000:0000:0000:0000/64) : fc00:41d0:701:1100::fffe/64 // network range : fc00:41d0:701:1100:0000:0000:0000:0000- fc00:41d0:701:1100:ffff:ffff:ffff:ffff ``` ``` vmbr1: flags=4163 mtu 1500 inet 10.133.0.254 netmask 255.255.255.0 broadcast 10.133.0.255 inet6 fe80::7069:deff:fe53:4683 prefixlen 64 scopeid 0x20 inet6 fc00:41d0:701:1100::fffe prefixlen 64 scopeid 0x0 ether 72:69:de:53:46:83 txqueuelen 1000 (Ethernet) RX packets 68448644 bytes 15499970989 (14.4 GiB) RX errors 0 dropped 0 overruns 0 frame 0 TX packets 63449533 bytes 7999980401 (7.4 GiB) TX errors 0 dropped 0 overruns 0 carrier 0 collisions 0 ``` ---- ### UK.LAB3W.VPS (Angleterre/Londres) Ici c'est un VPS (1 seule IPv6 UNICAST GLOBAL). #### VMBR0 <-> LAN/WAN ``` //----------------------- // VMBR0 <-> LAN/WAN //--------- // IP Address (addr unicast globale "2001::/128" : 2001:41d0:801:2000::44f9/128 //--------- // IP Address (addr secure wide area) : fec0:0000:0000:0000:0000:0000:0000:0243/16 // network range : fec0:0000:0000:0000:0000:0000:0000:0000- fec0:ffff:ffff:ffff:ffff:ffff:ffff:ffff //--------- // IP Address (addr unicast globale "2001::" / addr unique locale "fc01::") -> VLAN_D1 (a1ff:00ff/96) : fec0:cb1d:02d4:885e:eeee:0642:0000:0254/61 // network range : fec0:cb1d:02d4:8858:0000:0000:0000:0000- fec0:cb1d:02d4:885f:ffff:ffff:ffff:ffff ``` ``` vmbr0: flags=4163 mtu 1500 inet 57.128.171.43 netmask 255.255.255.0 broadcast 57.128.171.255 inet6 fe80::a09c:91ff:fed5:d3d9 prefixlen 64 scopeid 0x20 inet6 fec1::243 prefixlen 128 scopeid 0x40 inet6 2001:41d0:801:2000::44f9 prefixlen 128 scopeid 0x0 ether a2:9c:91:d5:d3:d9 txqueuelen 1000 (Ethernet) RX packets 778091 bytes 177948788 (169.7 MiB) RX errors 0 dropped 0 overruns 0 frame 0 TX packets 684303 bytes 250874892 (239.2 MiB) TX errors 0 dropped 0 overruns 0 carrier 0 collisions 0 ``` #### VMBR1 <-> VLAN/VSERVERs ``` //----------------------- // VMBR1 <-> VLAN/VSERVERs //--------- // IP Address (addr unicast globale "2001::" / addr unique locale "fc01::") -> VLAN_00 (0000:0000:0000:0000/64) : fc00:41d0:801:2000::fffe/64 // network range : fc00:41d0:801:2000:0000:0000:0000:0000- fc00:41d0:801:2000:ffff:ffff:ffff:ffff vmbr1: flags=4163 mtu 1500 inet 10.171.43.254 netmask 255.255.255.0 broadcast 10.171.43.255 inet6 fe80::40a9:16ff:fe94:6f1a prefixlen 64 scopeid 0x20 inet6 fc00:41d0:801:2000::fffe prefixlen 64 scopeid 0x0 ether 42:a9:16:94:6f:1a txqueuelen 1000 (Ethernet) RX packets 24074 bytes 3246205 (3.0 MiB) RX errors 0 dropped 0 overruns 0 frame 0 TX packets 20868 bytes 64167857 (61.1 MiB) TX errors 0 dropped 0 overruns 0 carrier 0 collisions 0 ``` ---- ### CA.LAB3W.SRV (Canada/Montreal) Ici c'est un Dédié (1 bloc IPv6::/64 UNICAST GLOBAL). ``` //----------------------- [...] //----------------------- ```