• New router and HE.NET tunnel

    From Mattias Larsson@2:203/210 to All on Tue Aug 16 11:20:47 2016
    Hi all.

    So I got my Ubiquity EdgeRouter Lite yesterday and spend all afternoon
    setting it up as best I could. It was a fair bit of tinkering but it seems to have far better IPv6 support than the old Netgear R7000.

    I got the tunnel up, got some IPv6 adressen on my "local" network and a IPv6 firewall setup in the router. My Netgear is now acting as an AP/switch behind the EdgeRouter.

    Lots of config and all the IPv6 stuff is CLI only which was a new experience for me. But I had alot of fun. :)

    IPv6-test.com reports 19/20 result. Not been able to check if my services
    work over IPv6 though but I have opened binkp on bbs.beyond.nu 24554 in hopes that it works now.

    So far I'm pretty pleased with the EdgeRouter Lite, it seems to be able to handle quite a bit of load to so thats nice.

    --- Mystic BBS v1.12 A31 (Linux)
    * Origin: Beyond Systems BBS (2:203/210)
  • From Michiel van der Vlist@2:280/5555 to Mattias Larsson on Tue Aug 16 12:55:28 2016
    Hello Mattias,

    On Tuesday August 16 2016 11:20, you wrote to All:

    IPv6-test.com reports 19/20 result. Not been able to check if my
    services work over IPv6 though

    Try making an outgoing binkp call to my system.

    Oh wait. Mystic does not support outgoing IPv6 yet...

    but I have opened binkp on bbs.beyond.nu 24554 in hopes that it works
    now.

    You'r making progress:

    + 12:36 [1040] call to 2:203/210@fidonet
    12:36 [1040] trying 2002:9b04:d43a:0:81cd:e79d:45e7:9566
    [2002:9b04:d43a:0:81cd:e79d:45e7:9566]...
    ? 12:36 [1040] connection to 2:203/210@fidonet failed:
    {W32 API error 10060} Connection timed out

    That's not working. But...

    12:36 [1040] trying bbs.beyond.nu [2001:470:28:84e:2a0:98ff:fe96:8f6]...
    12:36 [1040] connected
    + 12:36 [1040] outgoing session with bbs.beyond.nu:24554
    [2001:470:28:84e:2a0:98ff:fe96:8f6]
    - 12:36 [1040] OPT CRAM-MD5-36249fee1f47b1b6b43e93e16909d2cc
    + 12:36 [1040] Remote requests MD mode
    - 12:36 [1040] SYS Beyond Systems BBS
    - 12:36 [1040] ZYZ Mattias Larsson

    That works! Your he.net tunnel does its job. Just remove the AAAA record for the
    2002:9b04:: from your host name.

    - 12:36 [1040] VER Mystic/1.12A31 binkp/1.0
    + 12:36 [1040] addr: 2:203/210@fidonet
    ? 12:36 [1040] rerror: Unsecured session not allowed
    + 12:36 [1040] done (to 2:203/210@fidonet, failed, S/R: 0/0 (0/0 bytes))
    12:36 [1040] session closed, quitting...

    And of course nag the maintainer of mystic to remove the annoying bug of not accepting unsecure sessions.


    Cheers, Michiel

    --- GoldED+/W32-MSVC 1.1.5-b20130111
    * Origin: he.net certified sage (2:280/5555)
  • From Mattias Larsson@2:203/210 to Michiel van der Vlist on Tue Aug 16 13:58:56 2016
    On 08/16/16, Michiel van der Vlist said the following...

    That works! Your he.net tunnel does its job. Just remove the AAAA record for the 2002:9b04:: from your host name.

    Not sure where that comes from, I have no AAAA-record left with that IP.

    And of course nag the maintainer of mystic to remove the annoying bug of not accepting unsecure sessions.

    Yea I will do that. :)

    --- Mystic BBS v1.12 A31 (Linux)
    * Origin: Beyond Systems BBS (2:203/210)
  • From Michiel van der Vlist@2:280/5555 to Mattias Larsson on Tue Aug 16 14:13:16 2016
    Hello Mattias,

    On Tuesday August 16 2016 13:58, you wrote to me:

    That works! Your he.net tunnel does its job. Just remove the AAAA
    record for the 2002:9b04:: from your host name.

    Not sure where that comes from, I have no AAAA-record left with that
    IP.

    My mistake. I had that address hard coded for a previous test and forgot toremove it.

    And of course nag the maintainer of mystic to remove the annoying
    bug of not accepting unsecure sessions.

    Yea I will do that. :)

    And nag him about outgoing IPv6, so that you can become a full member og tghe Fidonet IPv6 club.


    Cheers, Michiel

    --- GoldED+/W32-MSVC 1.1.5-b20130111
    * Origin: he.net certified sage (2:280/5555)
  • From Michiel van der Vlist@2:280/5555 to Mattias Larsson on Tue Aug 16 14:52:11 2016
    Hello Mattias,

    Tuesday August 16 2016 14:13, I wrote to you:

    And o yeah, there is this:

    D:\FIDO\BINKD>ping bbs.beyond.nu

    Ping bbs.beyond.nu [2001:470:28:84e:2a0:98ff:fe96:8f6] mit 32 Bytes Daten:

    Zeitberschreitung der Anforderung.
    Zeitberschreitung der Anforderung.
    Zielhost nicht erreichbar.
    Zielhost nicht erreichbar.

    Ping-Statistik fr 2001:470:28:84e:2a0:98ff:fe96:8f6:
    Pakete: Gesendet = 4, Empfangen = 0, Verloren = 4 (100% Verlust),

    Your node does not ping. In itself no big deal, but you may want to check your firewall for ICMP. For proper IPv6 operation, ICMP may not be totally blocked.


    Cheers, Michiel

    --- GoldED+/W32-MSVC 1.1.5-b20130111
    * Origin: he.net certified sage (2:280/5555)
  • From Mattias Larsson@2:203/210 to Michiel van der Vlist on Tue Aug 16 15:26:38 2016
    On 08/16/16, Michiel van der Vlist said the following...

    Ping-Statistik fr 2001:470:28:84e:2a0:98ff:fe96:8f6:
    Pakete: Gesendet = 4, Empfangen = 0, Verloren = 4 (100% Verlust),

    Your node does not ping. In itself no big deal, but you may want to
    check your firewall for ICMP. For proper IPv6 operation, ICMP may not be totally blocked.

    That is really strange... I did a couple of tests online and it seem to work just fine so I assumed everything was fine.

    I did notice though that the port-scan tool on he.net said the same thing,
    that my host doesn't respond to ping. I have firewall-rules to accept it so it's strange.

    Think I need to research this a bit.

    I also noticed that I can't reach ipv6.chappell-family.com and I seem to remember that being a reputable site to test some ipv6 on. And I also seems
    to be unable to access whatever site Microsoft uses when you sign up for Insider Preview (Windows 10)... I'm thinking I might have some kind of routing-problem...

    --- Mystic BBS v1.12 A31 (Linux)
    * Origin: Beyond Systems BBS (2:203/210)