zoot native をNECのIXに設定してみたのでメモ。
環境はひかり電話あり。バージョンはVersion 10.2.23です。
VPN(L2TP/IPsec)はこちらです。
ip ufs-cache max-entries 20000
ip ufs-cache enable
ip route default Tunnel0.0
ip dhcp enable
ipv6 ufs-cache max-entries 10000
ipv6 ufs-cache enable
ipv6 dhcp enable
ipv6 access-list block-list deny ip src any dest any
ipv6 access-list dhcpv6-list permit udp src any sport any dest any dport eq 546
ipv6 access-list dhcpv6-list permit udp src any sport any dest any dport eq 547
ipv6 access-list icmpv6-list permit icmp src any dest any
ipv6 access-list other-list permit ip src any dest any
ipv6 access-list tunnel-list permit 4 src any dest any
ipv6 access-list dynamic cache 65535
ipv6 access-list dynamic dflt-list access other-list
!
!!
proxy-dns ip enable
proxy-dns ip request both
!
http-server ip access-list web_console
http-server ip enable
!
!
ddns enable
!
ip dhcp profile web_gigaethernet1.0
assignable-range DHCP範囲 DHCP範囲
dns-server 1.1.1.1
!
ipv6 dhcp client-profile dhcpv6-cl
option-request dns-servers
ia-pd subscriber GigaEthernet1.0 ::/64 eui-64
!
ipv6 dhcp server-profile dhcpv6-sv
dns-server dhcp
!
ddns profile transix-fix-update
url http://update.transix.jp/request ←初期の手順書 https://は誤り
query username=ユーザー名&password=パスワード
transport ipv6
source-interface GigaEthernet1.0
update-interval 10
!
device GigaEthernet0
!
device GigaEthernet1
!
interface GigaEthernet0.0
no ip address
ipv6 enable
ipv6 dhcp client dhcpv6-cl
ipv6 traffic-class tos 0
ipv6 nd proxy GigaEthernet1.0
ipv6 filter dhcpv6-list 1 in
ipv6 filter icmpv6-list 2 in
ipv6 filter tunnel-list 3 in
ipv6 filter block-list 100 in
ipv6 filter dhcpv6-list 1 out
ipv6 filter icmpv6-list 2 out
ipv6 filter tunnel-list 3 out
ipv6 filter dflt-list 100 out
no shutdown
!
interface GigaEthernet1.0
ip address 172.25.0.254/24 自身のアドレス
ip dhcp binding web_gigaethernet1.0
ipv6 enable
ipv6 interface-identifier 00:00:00:00:00:00:fe:ed ←::feedをこのように記述
ipv6 dhcp server dhcpv6-sv
ipv6 nd ra enable
ipv6 nd ra other-config-flag
no shutdown
!
interface Loopback0.0
no ip address
!
interface Null0.0
no ip address
!
interface Tunnel0.0
tunnel mode 4-over-6
tunnel destination 2404:8e01::feed:140 ←IPIPの相手側アドレス
tunnel source GigaEthernet1.0
ip address ***.***.***.***/32 ←割り当てられたipv4アドレス
ip tcp adjust-mss auto
ip napt enable
no shutdown
速度はこんな感じです。
Softether ipv4
Softhter ipv6