From owner-freebsd-net@freebsd.org Thu Jan 21 19:03:09 2021 Return-Path: Delivered-To: freebsd-net@mailman.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mailman.nyi.freebsd.org (Postfix) with ESMTP id 8D0264DC660 for ; Thu, 21 Jan 2021 19:03:09 +0000 (UTC) (envelope-from zarychtam@plan-b.pwste.edu.pl) Received: from plan-b.pwste.edu.pl (plan-b.pwste.edu.pl [IPv6:2001:678:618::40]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client CN "plan-b.pwste.edu.pl", Issuer "R3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4DMBcD3jTjz4l4s for ; Thu, 21 Jan 2021 19:03:08 +0000 (UTC) (envelope-from zarychtam@plan-b.pwste.edu.pl) Received: from fomalhaut.potoki.eu ([IPv6:2001:470:71:d47:d104:592c:ab6c:797e]) (authenticated bits=0) by plan-b.pwste.edu.pl (8.16.1/8.16.1) with ESMTPSA id 10LJ34IU009193 (version=TLSv1.2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128 verify=NO) for ; Thu, 21 Jan 2021 20:03:04 +0100 (CET) (envelope-from zarychtam@plan-b.pwste.edu.pl) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=plan-b.pwste.edu.pl; s=plan-b-mailer; t=1611255784; bh=A4JB4dLgotgwTcxYOnPzOlk0zNiPRubTAQYa1Lq+4Gw=; h=To:From:Subject:Date; b=VoZyW4c6XGT67634f2y6tMy2URTUQ6Y7R63+SsFFfevM4ztshmR7l9m3P3Y3aOP3U KDUt4cc9WTMAAWghhjUcktGhKHeWgn03DaBqHlzQzIuBXg0yy2UOwmhGrT0Wog3lL3 8p0SGT7eyAx4CmSUIWYZinHxp4q8vbfrSRi1/4nyTU5biCAZUJo/1L5F6zPcPdQWpL bp8QpH4TiD6Kep/gQwtAaExVG/56mmjOqHsG9kla/H18/FYGCWkwCpgXhmE8W5A0Yy jWAMdOaI/hNjZDIJFj6ASwpRB4rxR77+jSwsbP0ITiwe5xFvQ78sg/2Z7YBrnL+jFB qUesg+rtt90zQ== X-Authentication-Warning: plan-b.pwste.edu.pl: Host [IPv6:2001:470:71:d47:d104:592c:ab6c:797e] claimed to be fomalhaut.potoki.eu To: freebsd-net@freebsd.org From: Marek Zarychta Subject: new in-kernel wireguard and IPv6 endpoint Message-ID: <6d9afa54-d0be-df3e-9377-e19243279a70@plan-b.pwste.edu.pl> Date: Thu, 21 Jan 2021 20:03:03 +0100 User-Agent: Mozilla/5.0 (X11; FreeBSD amd64; rv:78.0) Gecko/20100101 Thunderbird/78.6.1 MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8; format=flowed Content-Language: en-US Content-Transfer-Encoding: 7bit X-Rspamd-Queue-Id: 4DMBcD3jTjz4l4s X-Spamd-Bar: --- Authentication-Results: mx1.freebsd.org; dkim=pass header.d=plan-b.pwste.edu.pl header.s=plan-b-mailer header.b=VoZyW4c6; dmarc=pass (policy=none) header.from=plan-b.pwste.edu.pl; spf=none (mx1.freebsd.org: domain of zarychtam@plan-b.pwste.edu.pl has no SPF policy when checking 2001:678:618::40) smtp.mailfrom=zarychtam@plan-b.pwste.edu.pl X-Spamd-Result: default: False [-3.80 / 15.00]; RCVD_VIA_SMTP_AUTH(0.00)[]; HAS_XAW(0.00)[]; TO_DN_NONE(0.00)[]; DKIM_TRACE(0.00)[plan-b.pwste.edu.pl:+]; DMARC_POLICY_ALLOW(-0.50)[plan-b.pwste.edu.pl,none]; FROM_EQ_ENVFROM(0.00)[]; MIME_TRACE(0.00)[0:+]; RBL_DBL_DONT_QUERY_IPS(0.00)[2001:678:618::40:from]; ASN(0.00)[asn:206006, ipnet:2001:678:618::/48, country:PL]; MID_RHS_MATCH_FROM(0.00)[]; ARC_NA(0.00)[]; NEURAL_HAM_MEDIUM(-1.00)[-1.000]; R_DKIM_ALLOW(-0.20)[plan-b.pwste.edu.pl:s=plan-b-mailer]; FROM_HAS_DN(0.00)[]; DWL_DNSWL_MED(-2.00)[pwste.edu.pl:dkim]; TO_MATCH_ENVRCPT_ALL(0.00)[]; NEURAL_HAM_LONG(-1.00)[-1.000]; MIME_GOOD(-0.10)[text/plain]; PREVIOUSLY_DELIVERED(0.00)[freebsd-net@freebsd.org]; RCPT_COUNT_ONE(0.00)[1]; SPAMHAUS_ZRD(0.00)[2001:678:618::40:from:127.0.2.255]; NEURAL_SPAM_SHORT(1.00)[1.000]; R_SPF_NA(0.00)[no SPF record]; RCVD_COUNT_TWO(0.00)[2]; RCVD_TLS_ALL(0.00)[]; MAILMAN_DEST(0.00)[freebsd-net] X-BeenThere: freebsd-net@freebsd.org X-Mailman-Version: 2.1.34 Precedence: list List-Id: Networking and TCP/IP with FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 21 Jan 2021 19:03:09 -0000 Dear subscribers, please let me know if is it possible to use IPv6 addressed endpoint for the tunnel? I have tried to specify the address enclosed in [] followed by the port number, for example: [2001:db8:0:1::1]:54333, have tried without it: 2001:db8:0:1::1:54333. I have also tried to specify it with prefix length, like this one: [2001:db8:0:1::1]/128:54333, but neither works. I got only some errors: matchaddr failed peer not found - dropping 0xfffff802099b6700 wg0: wg_peer_add bad length for endpoint 28 Is it possible to utilize IPv6 address as an endpoint for the tunnel with this implementation? Best regards, -- Marek Zarychta