Too-frequent change of privacy address / ND monitoring

Holger Zuleger Holger.Zuleger at hznet.de
Tue Mar 26 22:05:25 CET 2013


> when everything works according to standards, temporary addresses are
> regenerated just before the preferred lifetime times out, so you have
This may be true according to RFC4191 Section 3.5, but it will only 
occur if the prefix times out. In normal operation the preferred 
lifetime will be refreshed every router advertisement interval.

> the possibility to alter the frequency of renewals by changing the
> preferred-lifetime of the prefix in the Router-Advertisements. On a
> Cisco Router the command (to be issued under "interface") is:
>
> ipv6 nd prefix-advertisement ipv6-prefix/prefix-length valid-lifetime preferred-lifetime
The only way to alter the lifetime of temporary prefixes, is to set the 
kernel parameter for the TEMP_PREFERRED_LIFETIME, e.g.
sysctl -w net.inet6.ip6.temppltime=<new value>

The defaults (on Max OS X 10.7) are:
$ sysctl  -a | grep temp
net.inet6.ip6.use_tempaddr: 1
net.inet6.ip6.temppltime: 86400
net.inet6.ip6.tempvltime: 604800
net.inet6.ip6.prefer_tempaddr: 1

-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 4066 bytes
Desc: S/MIME Kryptografische Unterschrift
Url : http://lists.cluenet.de/pipermail/ipv6-ops/attachments/20130326/18614f31/attachment.bin 


More information about the ipv6-ops mailing list