Hello again.
I have deleted wanc6.
I followed it again to enable nat6.
You may check in this output:
root@OpenWrt:~# ubus call system board; \
> uci export network; \
> uci export dhcp; uci export firewall; \
> head -n -0 /etc/firewall.user; uci export mwan3; \
> ip -6 addr ; ip -6 ro li tab all ; ip -6 ru; \
> ls -l /etc/resolv.* /tmp/resolv.* /tmp/resolv.*/* ; head -n -0 /etc/resolv.*
/tmp/resolv.* /tmp/resolv.*/*
{
"kernel": "5.4.154",
"hostname": "OpenWrt",
"system": "MediaTek MT7621 ver:1 eco:3",
"model": "Netgear R6220",
"board_name": "netgear,r6220",
"release": {
"distribution": "OpenWrt",
"version": "21.02.1",
"revision": "r16325-88151b8303",
"target": "ramips/mt7621",
"description": "OpenWrt 21.02.1 r16325-88151b8303"
}
}
package network
config interface 'loopback'
option device 'lo'
option proto 'static'
option ipaddr '127.0.0.1'
option netmask '255.0.0.0'
config globals 'globals'
option packet_steering '1'
option ula_prefix 'd'
config device
option name 'br-lan'
option type 'bridge'
list ports 'lan3'
list ports 'lan4'
option promisc '1'
option acceptlocal '1'
config interface 'lan'
option device 'br-lan'
option proto 'static'
option netmask '255.255.255.0'
option ipaddr '192.168.0.1'
option ip6assign '64'
option ip6class 'local'
config interface 'wan'
option device 'wan'
option proto 'dhcp'
option metric '10'
option delegate '0'
config interface 'wan6'
option device 'wan'
option proto 'dhcpv6'
option reqaddress 'try'
option reqprefix 'auto'
option metric '10'
option sourcefilter '0'
option delegate '0'
config device
option type 'bridge'
option name 'br0'
list ports 'eth0'
list ports 'lan1'
list ports 'lan2'
option mtu '1500'
option macaddr '08:02:8E:E6:43:E1'
option txqueuelen '1000'
option mtu6 '1500'
option promisc '1'
option acceptlocal '1'
config bridge-vlan
option device 'br0'
option vlan '1'
list ports 'eth0:t'
list ports 'lan1'
config bridge-vlan
option device 'br0'
option vlan '2'
list ports 'eth0:t'
list ports 'lan2'
config device
option name 'br0.1'
option mtu '1500'
option macaddr '08:02:8E:E6:43:E2'
option txqueuelen '1000'
option mtu6 '1500'
option promisc '1'
option acceptlocal '1'
config device
option name 'br0.2'
option mtu '1500'
option txqueuelen '1000'
option mtu6 '1500'
option macaddr '08:02:8E:E6:43:E3'
config interface 'wanb'
option proto 'dhcp'
option device 'br0.1'
option metric '20'
option delegate '0'
config interface 'wanb6'
option proto 'dhcpv6'
option device 'br0.1'
option reqaddress 'try'
option reqprefix 'auto'
option metric '20'
option sourcefilter '0'
option delegate '0'
config interface 'wanc'
option proto 'dhcp'
option device 'br0.2'
option metric '30'
option delegate '0'
config device
option name 'wan'
option promisc '1'
option acceptlocal '1'
config device
option name 'lan3'
config device
option name 'lan4'
config route
option target '218.0.0.0'
option netmask '255.0.0.0'
option gateway '192.168.4.1'
option interface 'wanc'
config route
option target '125.0.0.0'
option netmask '255.0.0.0'
option gateway '192.168.4.1'
option interface 'wanc'
config route
option interface 'wanc'
option target '10.232.0.0'
option netmask '255.255.0.0'
option gateway '192.168.4.1'
package dhcp
config dnsmasq
option domainneeded '1'
option boguspriv '1'
option filterwin2k '0'
option localise_queries '1'
option rebind_protection '1'
option rebind_localhost '1'
option local '/lan/'
option domain 'lan'
option expandhosts '1'
option nonegcache '0'
option authoritative '1'
option readethers '1'
option leasefile '/tmp/dhcp.leases'
option resolvfile '/tmp/resolv.conf.d/resolv.conf.auto'
option nonwildcard '1'
option localservice '1'
option ednspacket_max '1232'
config dhcp 'lan'
option interface 'lan'
option start '100'
option limit '150'
option leasetime '12h'
option dhcpv4 'server'
option ra 'server'
list ra_flags 'none'
option dhcpv6 'server'
option ra_default '1'
config dhcp 'wan'
option interface 'wan'
option ignore '1'
list ra_flags 'none'
config odhcpd 'odhcpd'
option maindhcp '0'
option leasefile '/tmp/hosts/odhcpd'
option leasetrigger '/usr/sbin/odhcpd-update'
option loglevel '3'
config dhcp 'wan6'
option interface 'wan6'
option ignore '1'
list ra_flags 'none'
package firewall
config defaults
option input 'ACCEPT'
option output 'ACCEPT'
option forward 'REJECT'
option synflood_protect '1'
config zone
option name 'lan'
option input 'ACCEPT'
option output 'ACCEPT'
option forward 'ACCEPT'
option masq '1'
list network 'lan'
config zone
option name 'wan'
option input 'REJECT'
option output 'ACCEPT'
option forward 'REJECT'
option masq '1'
option mtu_fix '1'
option masq6_privacy '1'
list network 'wan'
list network 'wan6'
list network 'wanb'
list network 'wanb6'
list network 'wanc'
option masq6 '1'
config forwarding
option src 'lan'
option dest 'wan'
config rule
option name 'Allow-DHCP-Renew'
option src 'wan'
option proto 'udp'
option dest_port '68'
option target 'ACCEPT'
config rule
option name 'Allow-Ping'
option src 'wan'
option proto 'icmp'
option target 'ACCEPT'
list icmp_type 'echo-request'
config rule
option name 'Allow-IGMP'
option src 'wan'
option proto 'igmp'
option target 'ACCEPT'
config rule
option name 'Allow-DHCPv6'
option src 'wan'
option proto 'udp'
option dest_port '546'
option family 'ipv6'
option target 'ACCEPT'
config rule
option name 'Allow-MLD'
option src 'wan'
option proto 'icmp'
option family 'ipv6'
option target 'ACCEPT'
config rule
option name 'Allow-ICMPv6-Input'
option src 'wan'
option proto 'icmp'
list icmp_type 'echo-request'
list icmp_type 'echo-reply'
list icmp_type 'destination-unreachable'
list icmp_type 'packet-too-big'
list icmp_type 'time-exceeded'
list icmp_type 'bad-header'
list icmp_type 'unknown-header-type'
list icmp_type 'router-solicitation'
list icmp_type 'neighbour-solicitation'
list icmp_type 'router-advertisement'
list icmp_type 'neighbour-advertisement'
option limit '1000/sec'
option family 'ipv6'
option target 'ACCEPT'
config rule
option name 'Allow-ICMPv6-Forward'
option src 'wan'
option proto 'icmp'
option limit '1000/sec'
option family 'ipv6'
option target 'ACCEPT'
list icmp_type 'bad-header'
list icmp_type 'destination-unreachable'
list icmp_type 'echo-reply'
list icmp_type 'echo-request'
list icmp_type 'packet-too-big'
list icmp_type 'time-exceeded'
list icmp_type 'unknown-header-type'
option dest '*'
option enabled ''\''0'\'''
config rule
option name 'Allow-IPSec-ESP'
option src 'wan'
option dest 'lan'
option proto 'esp'
option target 'ACCEPT'
config rule
option name 'Allow-ISAKMP'
option src 'wan'
option dest 'lan'
option dest_port '500'
option proto 'udp'
option target 'ACCEPT'
config rule
option name 'Support-UDP-Traceroute'
option src 'wan'
option dest_port '33434:33689'
option proto 'udp'
option family 'ipv4'
option target 'REJECT'
option enabled '0'
config include
option path '/etc/firewall.user'
config include 'nat6'
option path '/etc/firewall.nat6'
option reload '1'
# This file is interpreted as shell script.
# Put your custom iptables rules here, they will
# be executed with each firewall (re-)start.
# Internal uci firewall chains are flushed and recreated on reload, so
# put custom rules into the root chains e.g. INPUT or FORWARD or into the
# special user chains, e.g. input_wan_rule or postrouting_lan_rule.
package mwan3
config policy 'balanced'
list use_member 'wan_m1_w3'
list use_member 'wanb_m1_w2'
list use_member 'wanc_m1_w2'
list use_member 'wan6_m1_w3'
list use_member 'wanb6_m1_w2'
list use_member 'wanc6_m1_w2'
option last_resort 'unreachable'
config policy 'wan_only'
list use_member 'wan_m1_w3'
list use_member 'wan6_m1_w3'
config policy 'wanb_only'
list use_member 'wanb_m1_w2'
list use_member 'wanb6_m1_w2'
config policy 'wan_wanb'
list use_member 'wan_m1_w3'
list use_member 'wanb_m2_w2'
list use_member 'wan6_m1_w3'
list use_member 'wanb6_m2_w2'
config policy 'wanb_wan'
list use_member 'wan_m2_w3'
list use_member 'wanb_m1_w2'
list use_member 'wan6_m2_w3'
list use_member 'wanb6_m1_w2'
config globals 'globals'
option mmx_mask '0x3F00'
config interface 'wan'
option enabled '1'
list track_ip '8.8.4.4'
list track_ip '8.8.8.8'
list track_ip '208.67.222.222'
list track_ip '208.67.220.220'
option family 'ipv4'
option reliability '2'
config interface 'wan6'
list track_ip '2001:4860:4860::8844'
list track_ip '2001:4860:4860::8888'
list track_ip '2620:0:ccd::2'
list track_ip '2620:0:ccc::2'
option family 'ipv6'
option reliability '2'
option initial_state 'online'
option track_method 'ping'
option count '1'
option size '56'
option max_ttl '60'
option check_quality '1'
option failure_latency '1000'
option failure_loss '40'
option recovery_latency '500'
option recovery_loss '10'
option timeout '4'
option interval '10'
option failure_interval '5'
option keep_failure_interval '1'
option recovery_interval '5'
option down '5'
option up '5'
option enabled '1'
list flush_conntrack 'ifup'
list flush_conntrack 'ifdown'
list flush_conntrack 'connected'
list flush_conntrack 'disconnected'
config interface 'wanb'
list track_ip '8.8.4.4'
list track_ip '8.8.8.8'
list track_ip '208.67.222.222'
list track_ip '208.67.220.220'
option family 'ipv4'
option reliability '1'
option enabled '1'
option initial_state 'online'
option track_method 'ping'
option count '1'
option size '56'
option max_ttl '60'
option check_quality '0'
option timeout '4'
option interval '10'
option failure_interval '5'
option recovery_interval '5'
option down '5'
option up '5'
config interface 'wanb6'
list track_ip '2001:4860:4860::8844'
list track_ip '2001:4860:4860::8888'
list track_ip '2620:0:ccd::2'
list track_ip '2620:0:ccc::2'
option family 'ipv6'
option reliability '1'
option enabled '1'
option initial_state 'online'
option track_method 'ping'
option count '1'
option size '56'
option max_ttl '60'
option check_quality '1'
option failure_latency '1000'
option failure_loss '40'
option recovery_latency '500'
option recovery_loss '10'
option timeout '4'
option interval '10'
option failure_interval '5'
option keep_failure_interval '1'
option recovery_interval '5'
option down '5'
option up '5'
list flush_conntrack 'ifup'
list flush_conntrack 'ifdown'
list flush_conntrack 'connected'
list flush_conntrack 'disconnected'
config member 'wan_m1_w3'
option interface 'wan'
option metric '1'
option weight '3'
config member 'wan_m2_w3'
option interface 'wan'
option metric '2'
option weight '3'
config member 'wanb_m1_w2'
option interface 'wanb'
option metric '1'
option weight '2'
config member 'wanb_m2_w2'
option interface 'wanb'
option metric '2'
option weight '2'
config member 'wan6_m1_w3'
option interface 'wan6'
option metric '1'
option weight '3'
config member 'wan6_m2_w3'
option interface 'wan6'
option metric '2'
option weight '3'
config member 'wanb6_m1_w2'
option interface 'wanb6'
option metric '1'
option weight '2'
config member 'wanb6_m2_w2'
option interface 'wanb6'
option metric '2'
option weight '2'
config rule 'https'
option sticky '1'
option dest_port '443'
option proto 'tcp'
option use_policy 'balanced'
config rule 'default_rule_v4'
option dest_ip '0.0.0.0/0'
option use_policy 'balanced'
option family 'ipv4'
config rule 'default_rule_v6'
option dest_ip '::/0'
option use_policy 'balanced'
option family 'ipv6'
config interface 'wanc6'
option enabled '1'
option initial_state 'online'
option track_method 'ping'
option reliability '1'
option count '1'
option size '56'
option max_ttl '60'
option timeout '4'
option interval '10'
option failure_interval '5'
option recovery_interval '5'
option down '5'
option up '5'
list track_ip '2001:4860:4860::8844'
list track_ip '2001:4860:4860::8888'
list track_ip '2620:0:ccd::2'
list track_ip '2620:0:ccc::2'
option check_quality '1'
option failure_latency '1000'
option failure_loss '40'
option recovery_latency '500'
option recovery_loss '10'
option keep_failure_interval '1'
option family 'ipv6'
list flush_conntrack 'ifup'
list flush_conntrack 'ifdown'
list flush_conntrack 'connected'
list flush_conntrack 'disconnected'
config interface 'wanc'
option enabled '1'
option initial_state 'online'
option family 'ipv4'
list track_ip '8.8.4.4'
list track_ip '8.8.8.8'
list track_ip '208.67.222.222'
list track_ip '208.67.220.220'
option track_method 'ping'
option reliability '1'
option count '1'
option size '56'
option max_ttl '60'
option check_quality '0'
option timeout '4'
option interval '10'
option failure_interval '5'
option recovery_interval '5'
option down '5'
option up '5'
config member 'wanc_m1_w2'
option metric '1'
option weight '2'
option interface 'wanc'
config member 'wanc_m2_w2'
option interface 'wanc'
option metric '2'
option weight '2'
config member 'wanc6_m1_w2'
option interface 'wanc6'
option metric '1'
option weight '2'
config member 'wanc6_m2_w2'
option interface 'wanc6'
option metric '2'
option weight '2'
1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 state UNKNOWN qlen 1000
inet6 ::1/128 scope host
valid_lft forever preferred_lft forever
2: eth0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1504 state UP qlen 1000
inet6 fe80::a02:8eff:fee6:43e8/64 scope link
valid_lft forever preferred_lft forever
7: wan@eth0: <BROADCAST,MULTICAST,PROMISC,UP,LOWER_UP> mtu 1500 state UP qlen 1000
inet6 2405:201:300f:c0:a02:8eff:fee6:43e9/64 scope global dynamic noprefixroute
valid_lft 4169sec preferred_lft 4169sec
inet6 fe80::a02:8eff:fee6:43e9/64 scope link
valid_lft forever preferred_lft forever
33: br-lan: <BROADCAST,MULTICAST,PROMISC,UP,LOWER_UP> mtu 1500 state UP qlen 1000
inet6 fe80::a02:8eff:fee6:43e8/64 scope link
valid_lft forever preferred_lft forever
35: br0: <BROADCAST,MULTICAST,PROMISC,UP,LOWER_UP> mtu 1500 state UP qlen 1000
inet6 fe80::a02:8eff:fee6:43e1/64 scope link
valid_lft forever preferred_lft forever
36: br0.1@br0: <BROADCAST,MULTICAST,PROMISC,UP,LOWER_UP> mtu 1500 state UP qlen 1000
inet6 2001:4490:4409:855e:a02:8eff:fee6:43e2/64 scope global dynamic noprefixroute
valid_lft 86315sec preferred_lft 86315sec
inet6 fd8c:fd18:2c36:c100:a02:8eff:fee6:43e2/64 scope global dynamic noprefixroute
valid_lft 7115sec preferred_lft 3515sec
inet6 2001:4490:4409:855e::1/128 scope global dynamic noprefixroute
valid_lft 85743sec preferred_lft 85743sec
inet6 fe80::a02:8eff:fee6:43e2/64 scope link
valid_lft forever preferred_lft forever
37: br0.2@br0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 state UP qlen 1000
inet6 fe80::a02:8eff:fee6:43e3/64 scope link
valid_lft forever preferred_lft forever
38: wlan1: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 state UP qlen 1000
inet6 fe80::a02:8eff:fee6:43ec/64 scope link
valid_lft forever preferred_lft forever
unreachable 2001:4490:4409:855e::/64 dev lo table 2 proto static metric 2147483647 pref medium
2405:201:300f:c0::/64 dev wan table 2 proto static metric 256 pref medium
unreachable 2405:201:300f:c0::/64 dev lo table 2 proto static metric 2147483647 pref medium
unreachable fd8c:fd18:2c36:c100::/64 dev lo table 2 proto static metric 2147483647 pref medium
fe80::/64 dev wan table 2 proto kernel metric 256 pref medium
default via fe80::6a14:1ff:fe58:9f8b dev wan table 2 proto static metric 384 pref medium
2001:4490:4409:855e::/64 dev br0.1 table 4 proto static metric 256 pref medium
unreachable 2001:4490:4409:855e::/64 dev lo table 4 proto static metric 2147483647 pref medium
unreachable 2405:201:300f:c0::/64 dev lo table 4 proto static metric 2147483647 pref medium
fd8c:fd18:2c36:c100::/64 dev br0.1 table 4 proto static metric 256 pref medium
unreachable fd8c:fd18:2c36:c100::/64 dev lo table 4 proto static metric 2147483647 pref medium
fe80::/64 dev br0.1 table 4 proto kernel metric 256 pref medium
default via fe80::1 dev br0.1 table 4 proto static metric 512 pref medium
2001:4490:4409:855e::/64 dev br0.1 proto static metric 256 pref medium
unreachable 2001:4490:4409:855e::/64 dev lo proto static metric 2147483647 pref medium
2405:201:300f:c0::/64 dev wan proto static metric 256 pref medium
unreachable 2405:201:300f:c0::/64 dev lo proto static metric 2147483647 pref medium
fd8c:fd18:2c36:c100::/64 dev br0.1 proto static metric 256 pref medium
unreachable fd8c:fd18:2c36:c100::/64 dev lo proto static metric 2147483647 pref medium
fe80::/64 dev eth0 proto kernel metric 256 pref medium
fe80::/64 dev br-lan proto kernel metric 256 pref medium
fe80::/64 dev br0 proto kernel metric 256 pref medium
fe80::/64 dev br0.1 proto kernel metric 256 pref medium
fe80::/64 dev br0.2 proto kernel metric 256 pref medium
fe80::/64 dev wan proto kernel metric 256 pref medium
fe80::/64 dev wlan1 proto kernel metric 256 pref medium
default via fe80::6a14:1ff:fe58:9f8b dev wan proto static metric 384 pref medium
default via fe80::1 dev br0.1 proto static metric 512 pref medium
local ::1 dev lo table local proto kernel metric 0 pref medium
anycast 2001:4490:4409:855e:: dev br0.1 table local proto kernel metric 0 pref medium
local 2001:4490:4409:855e::1 dev br0.1 table local proto kernel metric 0 pref medium
local 2001:4490:4409:855e:a02:8eff:fee6:43e2 dev br0.1 table local proto kernel metric 0 pref medium
anycast 2405:201:300f:c0:: dev wan table local proto kernel metric 0 pref medium
local 2405:201:300f:c0:a02:8eff:fee6:43e9 dev wan table local proto kernel metric 0 pref medium
anycast fd8c:fd18:2c36:c100:: dev br0.1 table local proto kernel metric 0 pref medium
local fd8c:fd18:2c36:c100:a02:8eff:fee6:43e2 dev br0.1 table local proto kernel metric 0 pref medium
anycast fe80:: dev eth0 table local proto kernel metric 0 pref medium
anycast fe80:: dev br-lan table local proto kernel metric 0 pref medium
anycast fe80:: dev br0.2 table local proto kernel metric 0 pref medium
anycast fe80:: dev br0.1 table local proto kernel metric 0 pref medium
anycast fe80:: dev br0 table local proto kernel metric 0 pref medium
anycast fe80:: dev wan table local proto kernel metric 0 pref medium
anycast fe80:: dev wlan1 table local proto kernel metric 0 pref medium
local fe80::a02:8eff:fee6:43e1 dev br0 table local proto kernel metric 0 pref medium
local fe80::a02:8eff:fee6:43e2 dev br0.1 table local proto kernel metric 0 pref medium
local fe80::a02:8eff:fee6:43e3 dev br0.2 table local proto kernel metric 0 pref medium
local fe80::a02:8eff:fee6:43e8 dev eth0 table local proto kernel metric 0 pref medium
local fe80::a02:8eff:fee6:43e8 dev br-lan table local proto kernel metric 0 pref medium
local fe80::a02:8eff:fee6:43e9 dev wan table local proto kernel metric 0 pref medium
local fe80::a02:8eff:fee6:43ec dev wlan1 table local proto kernel metric 0 pref medium
multicast ff00::/8 dev eth0 table local proto kernel metric 256 pref medium
multicast ff00::/8 dev br-lan table local proto kernel metric 256 pref medium
multicast ff00::/8 dev br0 table local proto kernel metric 256 pref medium
multicast ff00::/8 dev br0.1 table local proto kernel metric 256 pref medium
multicast ff00::/8 dev br0.2 table local proto kernel metric 256 pref medium
multicast ff00::/8 dev wan table local proto kernel metric 256 pref medium
multicast ff00::/8 dev wlan1 table local proto kernel metric 256 pref medium
0: from all lookup local
1002: from all iif wan lookup 2
1004: from all iif br0.1 lookup 4
2002: from all fwmark 0x200/0x3f00 lookup 2
2004: from all fwmark 0x400/0x3f00 lookup 4
2061: from all fwmark 0x3d00/0x3f00 blackhole
2062: from all fwmark 0x3e00/0x3f00 unreachable
3002: from all fwmark 0x200/0x3f00 unreachable
3004: from all fwmark 0x400/0x3f00 unreachable
32766: from all lookup main
4200000001: from all iif lo failed_policy
4200000007: from all iif wan failed_policy
4200000007: from all iif wan failed_policy
4200000033: from all iif br-lan failed_policy
4200000036: from all iif br0.1 failed_policy
4200000036: from all iif br0.1 failed_policy
4200000037: from all iif br0.2 failed_policy
lrwxrwxrwx 1 root root 16 Oct 24 09:01 /etc/resolv.conf -> /tmp/resolv.conf
-rw-r--r-- 1 root root 47 Feb 24 18:00 /tmp/resolv.conf
-rw-r--r-- 1 root root 228 Feb 24 18:00 /tmp/resolv.conf.d/resolv.conf.auto
/tmp/resolv.conf.d:
-rw-r--r-- 1 root root 228 Feb 24 18:00 resolv.conf.auto
==> /etc/resolv.conf <==
search lan
nameserver 127.0.0.1
nameserver ::1
==> /tmp/resolv.conf <==
search lan
nameserver 127.0.0.1
nameserver ::1
==> /tmp/resolv.conf.d <==
head: /tmp/resolv.conf.d: I/O error
==> /tmp/resolv.conf.d/resolv.conf.auto <==
# Interface wan
nameserver 192.168.29.1
# Interface wan6
nameserver 2405:201:300f:c0::c0a8:1d01
# Interface wanb
nameserver 192.168.100.1
# Interface wanb6
nameserver 2001:4490:3ffe:13::4
# Interface wanc
nameserver 192.168.4.1
I did not configure that and do not know how to change that......