logoalt Hacker News

candiddevmikelast Saturday at 7:43 PM3 repliesview on HN

No control over which source address is used. I'm assigning a lot of clients DHCP reservations so I can use static addresses for monitoring and firewall rules. With multiple addresses on the same network, clients may use their SLAAC address which won't match the firewall rule.


Replies

db48xlast Saturday at 10:27 PM

That still doesn’t really make sense. Why not run SLAAC on one subnet and have a single firewall rule for the whole thing? You’re not running any major servers on an Android phone, so it won’t be anything complex.

show 1 reply
justincormackyesterday at 9:14 AM

There are APIs in Linux to control source address selection but might be fiddly https://www.davidc.net/networking/ipv6-source-address-select...

franklyworksyesterday at 6:04 AM

Ah, this makes sense.