Subject: Re: selecting the source address for outgoing connections
To: None <netbsd-users@NetBSD.org>
From: Matthias Scheler <tron@zhadum.org.uk>
List: netbsd-users
Date: 12/03/2006 15:41:53
On Thu, Nov 30, 2006 at 03:10:00PM +0100, Geert Hendrickx wrote:
> But for IPv6, NAT is not an option (at least not with ipfilter).

For IPv6 you can mark an address assigned to an interface as "depricated".
Such an address won't be used as source address unless a socket is
specifically bound to it.

> Is there a more generic solution?

Don't use the VPN gateway for anything other than being a VPN gateway
e.g. by dedicating a Xen domU for the task.

	Kind regards


-- 
Matthias Scheler                                  http://zhadum.org.uk/