I added a AAAA ipv6 zone to my dns the idea was to run the SPF validation by google (who checked the ipv6 and not ipv4 (??) )Out today I have a client who called me and because it can no longer connect to my site...I take his computer in hand by teamviewer and actually the ping of my domain solves the ipv6 not ipv4 in the management of IP in plesk I
therefore 187 sites under the ipv4 and ipv6 0 on..I actually do not care about ipv6, it's just for spf..I lack some knowledge with dns I think...must I do something on dns to indicate that ipv4 is that actually hosts the site? or at plesk for all requests to be redirected to the ipv6 on ipv4?
I've read that Virtuozzo 4.0 supported ipv6. I'm having problems finding anything to help setup the node for ipv6. I can't anything on the web except for some people talking about how to disable ipv6. So I was just wondering if anyone else has seen anything.
Edit: I don't think I posted in the correct section. Opps. Could a moderator move this to the right section?
I did a little research about availability of dedicated servers with native IPv6 and my results are... Well, let's just say that they are worse than I expected them to be.
Only providers that I found (with IPv6 carriers in brackets) are:
- OVH, FR (Teleglobe, Global Crossing),
- CoreIX, UK (Tiscali, Teleglobe),
- Goscomb, UK (NTT/Verio, Global Crossing),
- FDCServers, US (NTT/Verio, Hurricane Electric).
There is also LeaseWeb (and I found one IPv6 server running on their network), but I didn't find any information regarding IPv6 on their page.
If you know others, please update the list (with IPv6 transit providers if you know them, no peering/IX please).
As you can see, there are at least 5 carriers who provide native IPv6. What bothers me is the fact that most of the US providers use NTT/Verio, Global Crossing or both of them in their BGP mix. Why don't they enable IPv6 connectivity? All their hardware supports it as IPv6 isn't anything new, so I really don't see a reason why they don't do it... Anyone want to enlight me?
As this isn't 'offers request' thread, I guess it wouldn't be against the rules for providers to say 'we do IPv6'
When I do an ifconfig I see a regular IP as well as an IPv6 one.
Does this mean my server is accessible via IPv6 as well, and would that bypass any firewall I have set on the regular IP? I noticed theres a ip6tables as well but I don't have it started. I'm fairly new to iptables in general so I'm not touching ipv6 now, unless I have to. Would it be safe to just block everything through ipv6 or would that be bad?
I'm kind of interested in learning more about IPv6 and eventually actually supporting it, but for now I rather not until I learn more about it.
I want to start a private ircd that is only accessible to ipv6 clients, but I can't find a provider who can provide me with this. I've contacted FDC Servers about this, but they can't provide me with an ipv6 address on a vps.
Nginx is listening on port 7080 with ipv6 protocol only.ipv6 isn't use on the server (ipv4 only).If I disable ipv6 support on the server, is this stopping nginx to use ipv6 ? (and some other process)How can I disable IPv6 on Plesk 12 ?
Can you make a recommendation for a switch-based L3 router which can
- hold a moderate number of routes (interface routes, a few hundred statics + default) - OSPF and BGP - MST - 1024 layer-3 dot1q subinterfaces (or maybe VLAN interfaces) with + traffic policing in and out per subinterface/vlan + VRRP/HSRP/NSRP - IPv4 & IPv6 native - 2x GigE ports - Not tip-over under 1gbps DDoS towards a VLAN interface.
I've been using 3560Gs, but they seem to lack the output traffic policing. I'd prefer to have subinterfaces which don't run spanning-tree, versus Vlan Interfaces to a trunk interface which runs spanning-tree. These switches sit at the L3 boundary between two L2 networks.
Cost is a big factor; but I also must carry vendor licenses & support contract, if the vendor asserts that not doing so is illegal in US.
I am writing today regarding the Plesk Firewall. It seemed to be pretty handy for quickly blocking troublesome users from *replace-with-whatever-IP-block-is-giving-you-trouble*. Yet I am unable to block IPv6 addresses, and the fire wall seems to let some blocked IPv4s right in. I did not see any distinction as to v4 or v6 in the Firewall dialog for adding custom rules, so...
The question is...
(1) Is the Plesk Firewall *supposed* to apply rules to IPv6 by default?
(2) Is there a setting or a switch that has to be configured for this to work?
(3) Where are said configuration options located?
Okay, when I run /sbin/ip6tables -L (CentOS) I get output that resembles the iptables (no 6) output, only... what, converted to IP6? Not sure. Example output:
DROP tcp ::ffff:184.108.40.206/104 ::/0 tcp dpts:1:10000
In that particular instance I added a drop for the 220.127.116.11/8 block (using the Plesk Firewall interface), in order to create the script that's loaded into iptables (and ip6tables as well, apparently) when one elects to "Apply Configuration". It worked great, executed perfectly, and the iptables output list output looked to be (and remember, I have grossly insufficient background knowledge in this area) accurate.
Yet at the time of this writing I can see via live traffic monitor that an address in the 18.104.22.168/8 block (IPv4) is pounding away at a website. This is curious, as the live traffic monitor indicates an IPv4 address. So... can an IPv4 address be detected and recorded from a host that is only able to connect via IPv6? While an interesting question, I was more concerned with just blocking the IPv6 address and get more academic with it later.
But this raises another question; why would Plesk populate ip6tables and not provide an interface to actually submit IPv6 addresses.
On a new install, if I create IPv4 and IPv6 pools (one of each enabled for branding), and create a brand using "IP address"="Shared IPv4 and dedicated IPv6", it fails without an onscreen error. A webspace is created but marked "No hosting" in PPA and Failed in Hosting Panel. A DNS zone is created. At that point I can't delete the webspace from Hosting Panel and there doesn't seem to be a way to delete it from PPA, however, I can delete the DNS zone.
This is in poa.log, not sure if it's relevant: Mar 26 09:19:20 ppa: ERR [UI:ecc45799:1427379560608 1:18157:b25ffb70 lib]: [Facade:leskResponse:arse] Plesk error 1013 Mar 26 09:19:22 ppa: ERR [openapi-firewall:b09ffb70 1:18032:b09ffb70 lib]: [iqxmlrpc-server] Server: Server error. Method 'system.methodSignature' not found.
Also after the DNS zone is created, the below is logged in poa.log...it doesn't seem relevant to the branding error but does seem to be a problem...
Mar 26 09:28:27 ppa: ERR [task:181:1932 1:18142:b33ffb70 lib]: [task:181 InteractiveHostOps:erform] ExSystem: module_id:'Common', ex_type_id:'1',Message:'Destination host 'ppa.example.net' (#1), IP '22.214.171.124' : Internal error: /usr/sbin/rndc /usr/sbin/rndc reconfig failed with code 1 saying: STDOUT: '' STDERR 'WARNING: key file (/etc/rndc.key) exists, but using default configuration file (/etc/rndc.conf) rndc: connection to remote host closed
[mysqld] datadir=/var/lib/mysql socket=/var/lib/mysql/mysql.sock # Default to using old password format for compatibility with mysql 3.x # clients (those using the mysqlclient10 compatibility package). old_passwords=1