Problems with hartbeat-tunnel behind a zyxel router
Shadow Hawkins on Monday, 19 September 2005 22:04:04
Hi all,
My hartbeat tunnel worked fine until I got a new router from my isp... It's a zyxel Prestige 660HW-61. Any ideas how I can fix this? I assume that I have to forward proto 41 to my machine, but it's already set as default server, so I thought that was sufficient?
Bram
Problems with hartbeat-tunnel behind a zyxel router
Shadow Hawkins on Thursday, 22 September 2005 12:56:16
Have you configured the firewall in the Zyxel also? I'm not 100% sure but even if you configure NAT/Port forward the firewall can block the traffic. So you can try to create a rule that allows this traffic to pass firewall. Noticed this thing when I configured Zyxel for remote management. Also note that you have to put a static IP-address in your computer. Zyxel doesn't forward traffic to dynamic IP-address.
Problems with hartbeat-tunnel behind a zyxel router
Shadow Hawkins on Friday, 23 September 2005 00:34:25
Hmm, I went to the telnet interface, the nat menu and edited server set 1. I set the default field to the internal ip of my server and that works fine for ipv4 stuff like smtp, web etc. I disabled the firewall completely to be sure, but that doesn't help. Any other ideas?
Problems with hartbeat-tunnel behind a zyxel router
Carmen Sandiego on Friday, 18 November 2005 13:55:17
It seems that the zyxel router is not able to forward proto 41. A workaround is to configure the zyxel as a bridge device and put a firewall/device that understand protocol 41.
Regards,
Chris
Problems with hartbeat-tunnel behind a zyxel router
Carmen Sandiego on Sunday, 23 April 2006 18:27:16
Personally, I had a zyxel router since I've installed ipv6.
There is no manner to redirect proto 41 on internal host.
Then I've so used a conexant-based stupid router with the dmz function that redirect all traffic at the wan interface to a internal specific host.
I have phoned to techincal assistance on zyxel, and I've made these questions:
Q:"The default function on nat mechanism redirect all traffic?"
A:"No, only TCP, UDP and ICMP traffic will be redirected to the specific host"
Q:"Can I redirect a protocol and not a service to a specific internal host"
A:"No, only services (port of tcp and udp) can be redirected, and some special
protocols (tunnels, particular protocols, ....)
Q:"And in the future?"
A:"We are sorry but We will no intend to add these function in the immediate future".
So Zyxel does no support redirecting of protocol 41.
bye
Problems with hartbeat-tunnel behind a zyxel router
Carmen Sandiego on Friday, 12 May 2006 19:01:38
I've a zyxel Prestige 660HW-61 and ipv6 works fine..so i've another problem, when I've rebooted my box, sixxs and 6to4 tunnel don't work at the same time..or sixxs or tun6ot4..i don't know why..
however if enable DMZ and put off firewll your router will work well with ipv6.
bye
Problems with hartbeat-tunnel behind a zyxel router
Shadow Hawkins on Tuesday, 05 September 2006 21:40:09
I've got a zyxel 650R, and have been struggling to get it to work as well.
I used to make a forward of all traffic to a firewall on my lan. The strange thing was that ipv6 traffic never reached that machine.
Thanks to your post I knew that it wasn't possible to have ipv6 connectivity this way with a zyxel.
So I tried to put the zyxel into bridge mode.
Now the firewall handles the adsl connection and ipv6 works great ! :-)
To other people using zyxel routers:
There are 3 menus you have to make modifications to in order for the bridge mode to work.
Also this has to be done via telnet...
You basically disable IP routing, enable bridge mode, and change the encapsulation to RFC1483.
See this guide for detailed instructions: http://www.green.ch/ch/fr/pdf/konfigurationen/bridge_konfig.pdf
(google might find one in english...the steps should be clear though)
Problems with hartbeat-tunnel behind a zyxel router
Jeroen Massar on Tuesday, 05 September 2006 22:18:25
The other, very easy, solution is to switch the tunnel to AYIYA, which works over most if not all NAT's because it is simply UDP for the NAT box.
Problems with hartbeat-tunnel behind a zyxel router
Shadow Hawkins on Friday, 17 November 2006 13:24:43
Confirmed. Latest update for the P660HW allows me to set protocol 41 in firewall, but it seems it's still impossible to route the traffic to the right machine inside the firewall. Oh well, maybe they will fix it in the next release. :)
I changed to AYIYA which works fine, and I can _finally_ set up proper v6 routing at home. Yay!
If anyone manages to trick the P660HW to do The Right Thing with the latest firmware, please let me know how it's done, as my ISP allows ipv6 connection using 6to4, if only I can get my router to behave. Next best thing is to tunnel my traffic, which I am currently doing.
Posting is only allowed when you are logged in. |