this post was submitted on 24 Aug 2023
71 points (98.6% liked)

Linux

48178 readers
1098 users here now

From Wikipedia, the free encyclopedia

Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).

Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word "Linux" in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.

Rules

Related Communities

Community icon by Alpár-Etele Méder, licensed under CC BY 3.0

founded 5 years ago
MODERATORS
 

cross-posted from: https://lemmy.world/post/3754933

While experimenting with ProtonVPN's Wireguard configs, I realized that my real IPv6 address was leaking while IPv4 was correctly going through the tunnel. How do I prevent this from happening?

I've already tried adding ::/0 to the AllowedIPs option and IPv6 is listed as disabled in the NetworkManager profile.

you are viewing a single comment's thread
view the rest of the comments
[–] wgs@lemmy.sdf.org 26 points 1 year ago* (last edited 1 year ago) (2 children)

IPv4 and IPv6 are two different network stacks. Your IPv4 stack is hidden behind wireguard, but not the IPv6 one.

The correct way to fix your issue is to setup a second witeguard tunnel for IPv6, and route IPv6 traffic through it.

Edit: many comments advise to block outbound IPv6 traffic. Don't do that! It will add latency to all your requests as you will have to wait for them to timeout.

[–] Molecular0079@lemmy.world 2 points 1 year ago (1 children)

Unfortunately I can't change the tunnel as it is provided by ProtonVPN.

[–] wgs@lemmy.sdf.org 5 points 1 year ago

Apparently they advise to disable IPv6. I'm a bit disappointed 😞

[–] notabot@lemm.ee 2 points 1 year ago (1 children)

If you disable IPv6 at the kernel level there's no extra latency as nothing even tries to connect to an IPv6 address. It's a shame to have to do it, but does fix the issue.

[–] wgs@lemmy.sdf.org 1 points 1 year ago

Disabling it is fine indeed, but I saw many comments advising to block outbound traffic, so I warned against that.