Public bug reported:

The system is configured to connect to an OpenVPN server set-up with tap
bridging.

On the remote server radvd is running on the bridged interface, in
assisted set-up mode. radvd advertises a ULA prefix (assisted with
DHCPv6) and a GUA prefix (slaac only)

The remote-server is set-up to push def1 gateway by default.

On the client 2 profiles are created; one with the intention of routing
all traffic through the VPN, one with the intention of only accessing
remote network sources.

For the secondary profile IPv4 address assignment is left on automatic,
route on manual with a static route configured for 10.0.0.0/8 through
10.0.1.1, the checkbox 'use network only for resources on its network'
is ticked.

For IPv6 every permutation of settings has been tried, none result in no IPv6 
addresses and associated routes getting assigned.
Even setting the IPv6 address assignment to Disabled still results in RA 
addresses getting assigned. 

Setting assignment to 'Disabled' /must/  remove the link local address on the 
tap interface, automatically failing any autoconf (RA autoconf depends on link 
local multicast) 
Setting assignment to 'Link-Local only' /must/ leave the ll address intact, 
while disabling autoconf (perhaps via sysctl)

Ideally (low priority) an extra variant setting would be introduced that
disallows GUA addressing to be assigned, but allows ULA addressing to be
assigned.

ProblemType: Bug
DistroRelease: Ubuntu 17.10
Package: network-manager-openvpn-gnome 1.2.10-0ubuntu2
ProcVersionSignature: Ubuntu 4.13.0-39.44-generic 4.13.16
Uname: Linux 4.13.0-39-generic x86_64
ApportVersion: 2.20.7-0ubuntu3.8
Architecture: amd64
CurrentDesktop: ubuntu:GNOME
Date: Sat May  5 21:25:43 2018
EcryptfsInUse: Yes
InstallationDate: Installed on 2018-03-18 (47 days ago)
InstallationMedia: Ubuntu 17.10 "Artful Aardvark" - Release amd64 (20180105.1)
SourcePackage: network-manager-openvpn
UpgradeStatus: No upgrade log present (probably fresh install)

** Affects: network-manager-openvpn (Ubuntu)
     Importance: Undecided
         Status: New


** Tags: amd64 apport-bug artful wayland-session

-- 
You received this bug notification because you are a member of Desktop
Packages, which is subscribed to network-manager-openvpn in Ubuntu.
https://bugs.launchpad.net/bugs/1769392

Title:
  BUG: networkmanager not able to disable IPv6 on OpenVPN Tap interface

Status in network-manager-openvpn package in Ubuntu:
  New

Bug description:
  The system is configured to connect to an OpenVPN server set-up with
  tap bridging.

  On the remote server radvd is running on the bridged interface, in
  assisted set-up mode. radvd advertises a ULA prefix (assisted with
  DHCPv6) and a GUA prefix (slaac only)

  The remote-server is set-up to push def1 gateway by default.

  On the client 2 profiles are created; one with the intention of
  routing all traffic through the VPN, one with the intention of only
  accessing remote network sources.

  For the secondary profile IPv4 address assignment is left on
  automatic, route on manual with a static route configured for
  10.0.0.0/8 through 10.0.1.1, the checkbox 'use network only for
  resources on its network' is ticked.

  For IPv6 every permutation of settings has been tried, none result in no IPv6 
addresses and associated routes getting assigned.
  Even setting the IPv6 address assignment to Disabled still results in RA 
addresses getting assigned. 

  Setting assignment to 'Disabled' /must/  remove the link local address on the 
tap interface, automatically failing any autoconf (RA autoconf depends on link 
local multicast) 
  Setting assignment to 'Link-Local only' /must/ leave the ll address intact, 
while disabling autoconf (perhaps via sysctl)

  Ideally (low priority) an extra variant setting would be introduced
  that disallows GUA addressing to be assigned, but allows ULA
  addressing to be assigned.

  ProblemType: Bug
  DistroRelease: Ubuntu 17.10
  Package: network-manager-openvpn-gnome 1.2.10-0ubuntu2
  ProcVersionSignature: Ubuntu 4.13.0-39.44-generic 4.13.16
  Uname: Linux 4.13.0-39-generic x86_64
  ApportVersion: 2.20.7-0ubuntu3.8
  Architecture: amd64
  CurrentDesktop: ubuntu:GNOME
  Date: Sat May  5 21:25:43 2018
  EcryptfsInUse: Yes
  InstallationDate: Installed on 2018-03-18 (47 days ago)
  InstallationMedia: Ubuntu 17.10 "Artful Aardvark" - Release amd64 (20180105.1)
  SourcePackage: network-manager-openvpn
  UpgradeStatus: No upgrade log present (probably fresh install)

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/network-manager-openvpn/+bug/1769392/+subscriptions

-- 
Mailing list: https://launchpad.net/~desktop-packages
Post to     : desktop-packages@lists.launchpad.net
Unsubscribe : https://launchpad.net/~desktop-packages
More help   : https://help.launchpad.net/ListHelp

Reply via email to