200字范文,内容丰富有趣,生活中的好帮手!
200字范文 > 潘多拉固件设置ipv6_(转)pandorabox固件+PPPOE拨号+IPV6

潘多拉固件设置ipv6_(转)pandorabox固件+PPPOE拨号+IPV6

时间:2020-06-21 16:55:21

相关推荐

潘多拉固件设置ipv6_(转)pandorabox固件+PPPOE拨号+IPV6

Step1:刷Pandorabox固件。

Step2:使路由器连接上网络,用putty登陆路由器

Step3:在putty里面输入

opkg update && opkg install kmod-ipt-nat6

opkg install iputils-tracepath6

uci set network.globals.ula_prefix="$(uci get network.globals.ula_prefix | sed 's/^./d/')"

uci commit network

uci set dhcp.lan.ra_default='1'

uci commit dhcp

touch /etc/init.d/nat6

vi /etc/init.d/nat6

注:nat6中的内容如下

#!/bin/sh /etc/mon

# NAT6 init script for OpenWrt // Depends on package: kmod-ipt-nat6

START=55

# Options

# -------

# Use temporary addresses (IPv6 privacy extensions) for outgoing connections? Yes: 1 / No: 0

PRIVACY=1

# Maximum number of attempts before this script will stop in case no IPv6 route is available

# This limits the execution time of the IPv6 route lookup to (MAX_TRIES+1)*(MAX_TRIES/2) seconds. The default (15) equals 120 seconds.

MAX_TRIES=15

# An initial delay (in seconds) helps to avoid looking for the IPv6 network too early. Ideally, the first probe is successful.

# This would be the case if the time passed between the system log messages "Probing IPv6 route" and "Setting up NAT6" is 1 second.

DELAY=5

# Logical interface name of outbound IPv6 connection

# There should be no need to modify this, unless you changed the default network interface names

# Edit by Vincent: I never changed my default network interface names, but still I have to change the WAN6_NAME to "wan" instead of "wan6"

WAN6_NAME="wan6"

# ---------------------------------------------------

# Options end here - no need to change anything below

boot() {

[ $DELAY -gt 0 ] && sleep $DELAY

logger -t NAT6 "Probing IPv6 route"

PROBE=0

COUNT=1

while [ $PROBE -eq 0 ]

do

if [ $COUNT -gt $MAX_TRIES ]

then

logger -t NAT6 "Fatal error: No IPv6 route found (reached retry limit)" && exit 1

fi

sleep $COUNT

COUNT=$((COUNT+1))

PROBE=$(route -A inet6 | grep -c '::/0')

done

logger -t NAT6 "Setting up NAT6"

WAN6_INTERFACE=$(uci get "network.$WAN6_NAME.ifname")

if [ -z "$WAN6_INTERFACE" ] || [ ! -e "/sys/class/net/$WAN6_INTERFACE/" ] ; then

logger -t NAT6 "Fatal error: Lookup of $WAN6_NAME interface failed. Were the default interface names changed?" && exit 1

fi

WAN6_GATEWAY=$(route -A inet6 -e | grep "$WAN6_INTERFACE" | awk '/::\/0/{print $2; exit}')

if [ -z "$WAN6_GATEWAY" ] ; then

logger -t NAT6 "Fatal error: No IPv6 gateway for $WAN6_INTERFACE found" && exit 1

fi

LAN_ULA_PREFIX=$(uci get network.globals.ula_prefix)

if [ $(echo "$LAN_ULA_PREFIX" | grep -c -E "^([0-9a-fA-F]{4}):([0-9a-fA-F]{0,4}):") -ne 1 ] ; then

logger -t NAT6 "Fatal error: IPv6 ULA prefix $LAN_ULA_PREFIX seems invalid. Please verify that a prefix is set and valid." && exit 1

fi

ip6tables -t nat -I POSTROUTING -s "$LAN_ULA_PREFIX" -o "$WAN6_INTERFACE" -j MASQUERADE

if [ $? -eq 0 ] ; then

logger -t NAT6 "Added IPv6 masquerading rule to the firewall (Src: $LAN_ULA_PREFIX - Dst: $WAN6_INTERFACE)"

else

logger -t NAT6 "Fatal error: Failed to add IPv6 masquerading rule to the firewall (Src: $LAN_ULA_PREFIX - Dst: $WAN6_INTERFACE)" && exit 1

fi

route -A inet6 add 2000::/3 gw "$WAN6_GATEWAY" dev "$WAN6_INTERFACE"

if [ $? -eq 0 ] ; then

logger -t NAT6 "Added $WAN6_GATEWAY to routing table as gateway on $WAN6_INTERFACE for outgoing connections"

else

logger -t NAT6 "Error: Failed to add $WAN6_GATEWAY to routing table as gateway on $WAN6_INTERFACE for outgoing connections"

fi

if [ $PRIVACY -eq 1 ] ; then

echo 2 > "/proc/sys/net/ipv6/conf/$WAN6_INTERFACE/accept_ra"

if [ $? -eq 0 ] ; then

logger -t NAT6 "Accepting router advertisements on $WAN6_INTERFACE even if forwarding is enabled (required for temporary addresses)"

else

logger -t NAT6 "Error: Failed to change router advertisements accept policy on $WAN6_INTERFACE (required for temporary addresses)"

fi

echo 2 > "/proc/sys/net/ipv6/conf/$WAN6_INTERFACE/use_tempaddr"

if [ $? -eq 0 ] ; then

logger -t NAT6 "Using temporary addresses for outgoing connections on interface $WAN6_INTERFACE"

else

logger -t NAT6 "Error: Failed to enable temporary addresses for outgoing connections on interface $WAN6_INTERFACE"

fi

fi

exit 0

}step4:

vim /etc/sysctl.conf

找到修改为:

net.ipv6.conf.default.forwarding=2

net.ipv6.conf.all.forwarding=2

net.ipv6.conf.default.accept_ra=2

net.ipv6.conf.all.accept_ra=2step5:

vim /etc/config/dhcp找到修改为:

config dhcp lan

option interface lan

option start 100

option limit 150

option leasetime 12h

option dhcpv6 server

option ra server

option ra_management 1

option ra_default 1step6:

uci set firewall.@rule["$(uci show firewall | grep 'Allow-ICMPv6-Forward' | cut -d'[' -f2 | cut -d']' -f1)"].enabled='0'

uci commit firewallstep7:

vim /etc/firewall.user插入:

ip6tables -t nat -I POSTROUTING -s $(uci get network.globals.ula_prefix) -j MASQUERADEstep8:

reboot

注意每一行就是一个命令

本内容不代表本网观点和政治立场,如有侵犯你的权益请联系我们处理。
网友评论
网友评论仅供其表达个人看法,并不表明网站立场。