From owner-freebsd-net@freebsd.org Mon Jun 12 11:19:29 2017 Return-Path: Delivered-To: freebsd-net@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id DD901BFA3A5 for ; Mon, 12 Jun 2017 11:19:29 +0000 (UTC) (envelope-from tijl@freebsd.org) Received: from mailrelay103.isp.belgacom.be (mailrelay103.isp.belgacom.be [195.238.20.130]) (using TLSv1.2 with cipher RC4-SHA (128/128 bits)) (Client CN "relay.skynet.be", Issuer "GlobalSign Organization Validation CA - SHA256 - G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 396296809A for ; Mon, 12 Jun 2017 11:19:28 +0000 (UTC) (envelope-from tijl@freebsd.org) X-Belgacom-Dynamic: yes IronPort-PHdr: =?us-ascii?q?9a23=3AQ1G92xZVuLGd8BL2sg9JZGb/LSx+4OfEezUN459i?= =?us-ascii?q?sYplN5qZoMS5bnLW6fgltlLVR4KTs6sC0LuJ9fi4EUU7or+5+EgYd5JNUxJXwe?= =?us-ascii?q?43pCcHRPC/NEvgMfTxZDY7FskRHHVs/nW8LFQHUJ2mPw6arXK99yMdFQviPgRp?= =?us-ascii?q?OOv1BpTSj8Oq3Oyu5pHfeQtFiT6/bL9oMBm6sRjau9ULj4dlNqs/0AbCrGFSe+?= =?us-ascii?q?RRy2NoJFaTkAj568yt4pNt8Dletuw4+cJYXqr0Y6o3TbpDDDQ7KG81/9HktQPC?= =?us-ascii?q?TQSU+HQRVHgdnwdSDAjE6BH6WYrxsjf/u+Fg1iSWIdH6QLYpUjmk8qxlSgLniD?= =?us-ascii?q?0fOjA38G/ZlNF+gqFZrxKvqBNw34HabZqJNPd8Yq/RYc8WSXZfUstXSidPApm8?= =?us-ascii?q?b4wKD+cZI+hYrov9p18TphagAgmsA/jvxSFNhnDs2606yPkqHAba3AwhHdIOtG?= =?us-ascii?q?/ZotXvNKgMT++40bTGwzvZY/NRwzf955HFfxY8qv+CWrJwdNDeyUgpFw7dgFWQ?= =?us-ascii?q?s5LqMC2O2eQWrmeX9e1gVfigi2Mhtgp/oSCvy98vh4TLnI4Yy1DJ+T9kzIsxId?= =?us-ascii?q?C0UlN3bN6iHZBNrS+VLZF2TdknQ2xwvSY6zaAJtoCjcSgRzZQn2wbfa/uac4iU?= =?us-ascii?q?+h7jVPieITN/hH99e7KwnRKy8UmlyuLiTMm010xGrjZEktnOsnABzQDc6s+ASv?= =?us-ascii?q?tm4Eih3CyA1wbI6u1eJkA0j6XbJ4Ygwr42iJUTrVzOEyz0lUnsjaKbdl8o9vWs?= =?us-ascii?q?5unjeLnqu5+RO5dxig7kM6QunsK/Af4/MggLR2Wb5eW81L/n/UDiTrVKlOM5nb?= =?us-ascii?q?fCv5DBOMsXvKm5AxVa0oo78RawEy+m0MgEnXkANF9FdgiHgJb3NF7VO/D3EO6z?= =?us-ascii?q?g1Kynzd33P3GMKfhDYvTIXfYi7fuYKxx60lGyAo8nphj4MceILMGLej1Ema3/O?= =?us-ascii?q?7VAxVze1i+0evqApB515gCQkqLA7SFK+XAuFWC7+4oMa+KaZND6xjnLP1w2//s?= =?us-ascii?q?iTcSnlgGcKyg24BfPGy5HPBODV+UbFDXrpEGC2hc7Vl2d/DjlFDXCW0bXH21Ra?= =?us-ascii?q?9pvjw=3D?= X-IronPort-Anti-Spam-Filtered: true X-IronPort-Anti-Spam-Result: =?us-ascii?q?A2BjBgC7dz5Z/w/HQVdcGgEBAQECAQEBA?= =?us-ascii?q?QgBAQEBFQEBAQECAQEBAQgBAQEBgy1SEIENjn+PFoFlKwGXaCELhXgCgmhDFQE?= =?us-ascii?q?BAQEBAQEBAQEBaihCDIFlIoJEAQEBAwE5HCMQCxgJJQ8ZER4GE4owDLF2i2QBA?= =?us-ascii?q?QEBAQEBAwEBAQEBAR0Fi2GKXQWeP4crhjWFXHmRGpRsNSKBClEwCIdYPjYBgW+?= =?us-ascii?q?FLyqCFQEBAQ?= X-IPAS-Result: =?us-ascii?q?A2BjBgC7dz5Z/w/HQVdcGgEBAQECAQEBAQgBAQEBFQEBAQE?= =?us-ascii?q?CAQEBAQgBAQEBgy1SEIENjn+PFoFlKwGXaCELhXgCgmhDFQEBAQEBAQEBAQEBa?= =?us-ascii?q?ihCDIFlIoJEAQEBAwE5HCMQCxgJJQ8ZER4GE4owDLF2i2QBAQEBAQEBAwEBAQE?= =?us-ascii?q?BAR0Fi2GKXQWeP4crhjWFXHmRGpRsNSKBClEwCIdYPjYBgW+FLyqCFQEBAQ?= Received: from 15.199-65-87.adsl-dyn.isp.belgacom.be (HELO kalimero.tijl.coosemans.org) ([87.65.199.15]) by relay.skynet.be with ESMTP; 12 Jun 2017 13:19:15 +0200 Received: from kalimero.tijl.coosemans.org (kalimero.tijl.coosemans.org [127.0.0.1]) by kalimero.tijl.coosemans.org (8.15.2/8.15.2) with ESMTP id v5CBJCWr073620; Mon, 12 Jun 2017 13:19:15 +0200 (CEST) (envelope-from tijl@FreeBSD.org) Date: Mon, 12 Jun 2017 13:19:12 +0200 From: Tijl Coosemans To: "Bjoern A. Zeeb" Cc: freebsd-net@FreeBSD.org Subject: Re: Enable IPv6 Privacy Extensions by default Message-ID: <20170612131912.42537b13@kalimero.tijl.coosemans.org> In-Reply-To: References: <20170611215904.4612ee41@kalimero.tijl.coosemans.org> MIME-Version: 1.0 Content-Type: text/plain; charset=US-ASCII Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-net@freebsd.org X-Mailman-Version: 2.1.23 Precedence: list List-Id: Networking and TCP/IP with FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 12 Jun 2017 11:19:30 -0000 On Sun, 11 Jun 2017 22:13:14 +0000 "Bjoern A. Zeeb" wrote: > On 11 Jun 2017, at 19:59, Tijl Coosemans wrote: >> I recently got a new modem/router from my ISP that supports IPv6. Added >> ifconfig_em0_ipv6="inet6 accept_rtadv" and rtsold_enable="YES" to >> /etc/rc.conf like the handbook says and now all my FreeBSD systems have >> an IPv6 address. \o/ >> >> I also added these lines to /etc/sysctl.conf to enable temporary >> addresses: >> >> net.inet6.ip6.use_tempaddr=1 >> net.inet6.ip6.prefer_tempaddr=1 >> >> Shouldn't these be enabled by default? There was a proposal 9 years ago >> that didn't get any objections but it seems it wasn't committed: >> https://lists.freebsd.org/pipermail/freebsd-net/2008-June/018381.html >> >> If there are no objections, I'll make the change in a week or so. > > Object :) > > Check the rc.conf ipv6_privacy option rather than setting the sysctl > manually. Ah, thanks. I see that RFC 4941 also recommends it be disabled by default.