Hello,
I have CCR1036 with OS 6.47.10 in production which was configured with separate bridges for the WAN uplink and LAN site, For IPv4 it works now, but I have been asked to add support for IPv6, but I have issues with routing IPv6 between LAN and WAN bridges.
- From br_wan I can reach the ISP router via IPv6 LL
- From br_wan I can reach the ISP router if set the GUA address on br_wan (via GUA addresses)
- From br_lan I can not reach br_wan via IPv6 LL, but I expect this as LL is link-local(bridge limited), and if bridges as separated then would not reach it.
- From br_lan I can not reach br_wan via GUA if both bridges are configured with the GUA address
- IPv6 is enabled (as LL is generated by Mikrotik)
- IPv6 firewall is cleaned
- IGMP Snooping / Proxy disabled
Ping from Server to link-local address of br_wan interface is as follows (looks like multicast neighbour solicitations is not forwarded from br_lan to br_wan)
/tool/sniffer/quick ipv6-address=fe80::7ec2:55ff:fe69:f2af interface=vlan1177
Columns: INTERFACE, TIME, NUM, DIR, SRC-MAC, DST-MAC, SRC-ADDRESS, DST-ADDRESS, PROTOCOL, SIZE, CPU
INTERFACE TIME NUM DIR SRC-MAC DST-MAC SRC-ADDRESS DST-ADDRESS PROTOCOL SIZE CPU
vlan1177 0.384 1 <- 7C:C2:55:69:F2:AF 33:33:FF:F3:C1:76 fe80::7ec2:55ff:fe69:f2af ff02::1:fff3:c176 ipv6:icmpv6 86 31
vlan1177 1.408 2 <- 7C:C2:55:69:F2:AF 33:33:FF:F3:C1:76 fe80::7ec2:55ff:fe69:f2af ff02::1:fff3:c176 ipv6:icmpv6 86 31
vlan1177 2.433 3 <- 7C:C2:55:69:F2:AF 33:33:FF:F3:C1:76 fe80::7ec2:55ff:fe69:f2af ff02::1:fff3:c176 ipv6:icmpv6 86 31
vlan1177 3.456 4 <- 7C:C2:55:69:F2:AF 33:33:FF:F3:C1:76 fe80::7ec2:55ff:fe69:f2af ff02::1:fff3:c176 ipv6:icmpv6 86 31
Any idea if this scenario is supported by Mikrotik(reach ISP from br_lan)?
Scenario as below