cakeofhonor

joined 1 year ago
[–] cakeofhonor 2 points 2 weeks ago* (last edited 2 weeks ago)

If it's any use, here are the WAN IPv6 options (auto, manual, or IPv6CP Extension) for the ZTE-ZXHN-F670, it's set to auto right now:

And these are the available LAN settings:

[–] cakeofhonor 1 points 2 weeks ago (1 children)

I'm located in Vietnam; the ISP is Viettel (probably not useful information, but hey, why not).

Is it possible to send the hint from OPNsense itself? I mentioned in the original post that OPNsense is behind the ISP router (ZTE-ZXHN-F670) which I kind of don't want to touch due to the fact that the terminology is quite different and that the ISP people come over to run tests on it whenever there are service issues. Either way, I've already tried to search through the settings and couldn't find any options for setting the prefix hint on the WAN side. I'm open to digging though those settings again if you're familiar with the router.

[–] cakeofhonor 1 points 2 weeks ago (2 children)

I'll try this when I get a chance. Off the top of my head, why did you set the prefix to 0x1? I was under the impression that it only needs to be set if there are multiple vlans and what are your rules for the WAN side of the firewall? My LAN interface is only getting an LLA so maybe it's being blocked from communicating with the ISP router.

[–] cakeofhonor 1 points 2 weeks ago (1 children)

I did forget to mention that. The IP addresses of the devices on the LAN do not share the same first half of the address as the IP on the ISP router. I have the OPNsense LAN set to track WAN interface, but the DHCP server is stuck saying "No available address range for configured interface subnet size.". I also noticed that my WAN for OPNsense has a global routable IP starting with 2402 as well as a LLA starting with fe80 but my LAN only has a LLA.

Which routes and firewall rules should I be checking?

34
Help with IPv6 (self.selfhosted)
submitted 2 weeks ago by cakeofhonor to c/selfhosted
 

My ISP recently made IPv6 available and I'm trying to figure out how to make it work with my network. The setup I have is an OPNsense box connected to my ISP's router and I'm using it to isolate my homelab from the rest of the network. However, the machines on my OPNsense LAN aren't being assigned IPv6 addresses that allow them to connect to the internet.

I can ping IPv6 sites from my OPNsense box and I see that it's being assigned a /64 prefix from the ISP router. If I use my laptop to connect to my ISP's router, I can visit IPv6 sites just fine as well. My devices in the OPNsense LAN also have IPv6 addresses and can ping each other using IPv6 but not the internet.

Are there special settings that I need to set for OPNsense to make this setup work? I've tried reading up on the different modes like SLAAC but I'm not quite grasping the concepts.

[–] cakeofhonor 1 points 3 weeks ago (1 children)

Are you doing this via rifle? That was how I was doing it in ranger, but with lf you can make custom shell commands directly in the config and assign custom hotkeys to it.

[–] cakeofhonor 2 points 3 weeks ago (3 children)

I second this. lf is basically ranger but you can integrate any shell commands or tools into it. It'll require a bit of setting up though as the defaults are bare bones.

[–] cakeofhonor 2 points 3 weeks ago (1 children)

One thing you can check out is quadlet, which is podman containers running as systemd services. You just basically put the .container files in the right directory and sytemd will pick them up and run them for you. I have syncthing and zerotier running like this.

I don't really think you need to layer anything unless you're doing virtualization, but I haven't really looked into that yet.

[–] cakeofhonor 1 points 5 months ago

I ultimately did go with Syncthing and uploading my files encrypted to Google Drive for backup. It's been working great for months. I've also been using Zeroteir to make this work with my laptop too while on the go.

[–] cakeofhonor 2 points 6 months ago (1 children)

Whoa I didn't expect to see a fellow Vietnamese on lemmy.

Could you link to the RMIT art forum?

[–] cakeofhonor 2 points 1 year ago

Aw I didn't realize that. It still works fine on my end. I get warning notifications in my windows VM, but everything still works. On Linux everything runs smoothly no errors. I think newpipe on Android is my most preferred implementation of a third party YouTube viewer so I'd love a desktop version of that.

[–] cakeofhonor 37 points 1 year ago (8 children)

Lots of good suggestions already, but if you have to stick to YouTube, you could always use a third party client. FreeTube for desktop and Newpipe for Android. They function great. You don't need an account and can organize and export your history and subscriptions, it's a much better way to interact with YouTube than the official methods. Newpip even allows for background playing.

[–] cakeofhonor 3 points 1 year ago (1 children)

Thanks, I'll look more into it.

 

So I have a NUC with Proxmox as the primary OS and OPNsense in a VM for my home network. I've been trying to move away from Google services but would still like to use them as a back up solution. Would it make sense to use Nextcloud in a VM as a replacement and use Rclone to encrypt and backup my files to Google Drive? Or should I use a NAS OS like Open Media Vault instead?

I'll also mention that I have an empty SSD that I can passthrough and that my primary draw to Nextcloud is that they have a Windows desktop syncing app like Google Drive does which makes things familiar and convenient. I don't plan on having my Nextcloud instance exposed to the web but might setup a Wireguard tunnel into the local network in the future.

 

Just finished watching this in cinema. The visuals are great and the music is even better this time than the first. However I thought the story should've been condensed and the ending is really unexpected. Does anyone else feel like it should've been made clear that this was only half a movie?

 

Probably a dumb question, but I'd like to see backup emails and 2FA as options.

view more: next ›