{"id":96,"date":"2011-02-09T15:11:48","date_gmt":"2011-02-09T15:11:48","guid":{"rendered":"http:\/\/gigihfordanama.wordpress.com\/?p=96"},"modified":"2012-08-08T00:14:47","modified_gmt":"2012-08-08T00:14:47","slug":"tunneling-ipv6-on-bsd-6-2","status":"publish","type":"post","link":"https:\/\/dosen.unila.ac.id\/gigih\/2011\/02\/09\/tunneling-ipv6-on-bsd-6-2\/","title":{"rendered":"Tunneling IPv6 on BSD 6.2"},"content":{"rendered":"<p><strong>IPv6<\/strong> adalah keluarga protokol <strong>TCP\/IP<\/strong> yang baru, dan diproyeksikan akan menggantikan <strong>IPv4<\/strong><br \/>\nyang telah menjadi standar de-facto protokol komunikasi di <strong>Internet<\/strong>.<br \/>\nBeberapa keterbatasan yang ada pada pendahulunya telah di perbaiki pada protokol baru ini,<br \/>\nseperti keleluasaan ruang pengalamatan, security yg lebih baik dengan masuknya <strong>IPSec <\/strong>dalam protokol requirement, adanya extension header yg memberi fleksibilitas terhadap penambahan fitur (di masa mendatang) dll. <strong>&#8211;&gt;&gt;<\/strong>(taken From <strong>ipv6.itb.ac.id<\/strong>)<!--more--><strong>Transisi<\/strong><\/p>\n<p>Ada beberapa mekanisme transisi dari IPv4 ke IPv6.<br \/>\nBerdasarkan draft IETF draft-ietf-v6ops-mech-v2-00.txt Mekanisme tersebut adalah:<br \/>\n<strong> \u2022 <\/strong> <strong>Dual IP layer<br \/>\n\u2022\u00a0\u00a0 \u00a0Tunneling<\/strong><\/p>\n<p><strong>Dual IP layer <\/strong>adalah sebuah cara dimana host dan router secara lengkap mendukung protokol <strong>IPv4<\/strong> dan <strong>IPv6<\/strong>.<br \/>\n<strong>Tunneling<\/strong> adalah sebuah cara melakukan koneksi point-to-point dimana paket <strong>IPv6 <\/strong><br \/>\nditumpangkan dalam header paket <strong>IPv4 <\/strong>melalui infrastruktur routing <strong>IPv4<\/strong>. Pada praktiknya kedua hal tersebut bisa dilakukan secara bersama atau masing-masing tergantung situasi setempat.\u00a0 Contohnya adalah bisa sebuah universitas belum mempunyai jaringan yang mendukung <strong>IPv6 <\/strong>ke internet maka universitas tersebut harus melakukan <strong>tunneling <\/strong>dahulu ke penyedia jaringan <strong>IPv6<\/strong>, baru kemudian menjalankan teknik Dual IP Layer.<\/p>\n<p>OK Dude lets Play on\u00a0 <strong>FreeBSD<\/strong><\/p>\n<p>Pertama Pastikan Kernel sudah direcompile dengan options Berikut<br \/>\n(By default dari versi 5.xx ke atas options ini sudah diembed di kernel<br \/>\nanda cukup mengaktifkan saja)<br \/>\n<strong><br \/>\nOPTIONS\u00a0\u00a0 \u00a0\u00a0\u00a0 \u00a0INET6 \u00a0\u00a0 \u00a0#IPv6 communications protocols<br \/>\nOPTIONS\u00a0\u00a0 \u00a0\u00a0\u00a0 \u00a0IPSEC \u00a0\u00a0 \u00a0#IP Security<br \/>\ndevice\u00a0\u00a0 \u00a0\u00a0\u00a0 \u00a0\u00a0\u00a0\u00a0\u00a0 gif \u00a0\u00a0 \u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 #IPv6 and IPv4 tunneling<br \/>\ndevice \u00a0\u00a0 \u00a0\u00a0\u00a0 \u00a0\u00a0\u00a0\u00a0 stf \u00a0\u00a0 \u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 #6to4 tunneling<\/strong><\/p>\n<p>untuk mengaktifkan fitur <strong>IPv6 <\/strong>di BSD<br \/>\nanda cukup mengedit file \/etc\/rc.conf<br \/>\n<strong><br \/>\nipv6_enable = \u201cYES\u201d<\/strong><\/p>\n<p>Tunneling pada FreeBSD<\/p>\n<p>Disebut tunneling karena harus mendefinisikan alamat <strong>IPv4 <\/strong>dari sisi client dan sisi <strong>ISP<\/strong>,<br \/>\nUntuk keperluan 6over4 ini penyedia tunnel atau disebut juga tunnel broker antara lain:<br \/>\n<strong><br \/>\n\u2022\u00a0\u00a0 \u00a0http:\/\/www.freenet6.net<br \/>\n\u2022\u00a0\u00a0 \u00a0http:\/\/ipv6tb.he.net<\/strong><\/p>\n<p>Kita akan mencoba mengimplementasikan 6over4 tunneling,<br \/>\nuntuk itu kita harus mendaftar terlebih dahulu ke penyedia tunnel \/ tunnelbroker.<br \/>\nGue telah mendaftar di <strong>http:\/\/ipv6tb.he.net<\/strong><br \/>\ndan mendapat account sebagai berikut :<\/p>\n<p><strong>Account: unila<\/p>\n<p>Tunnel Information\u00a0\u00a0\u00a0 \u00a0 :<br \/>\nServer IPv4 address\u00a0 \u00a0 : \u00a0\u00a0 \u00a064.71.128.83<br \/>\nServer IPv6 address\u00a0\u00a0\u00a0 : \u00a0\u00a0 \u00a02001:470:1F03:37d::1\/64<br \/>\nClient IPv4 address\u00a0\u00a0\u00a0\u00a0\u00a0 : \u00a0\u00a0 \u00a0222.124.196.97<br \/>\nClient IPv6 address\u00a0\u00a0\u00a0\u00a0\u00a0 : \u00a0\u00a0 \u00a02001:470:1F03:37d::2\/64<br \/>\nAssigned \/64\u00a0\u00a0 \u00a0\u00a0\u00a0 \u00a0\u00a0\u00a0 \u00a0\u00a0\u00a0 \u00a0\u00a0 : \u00a0\u00a0 \u00a0none<br \/>\nASN\u00a0\u00a0 \u00a0\u00a0\u00a0 \u00a0\u00a0\u00a0 \u00a0\u00a0\u00a0 \u00a0\u00a0\u00a0 \u00a0\u00a0\u00a0 \u00a0\u00a0\u00a0 \u00a0\u00a0\u00a0 \u00a0\u00a0\u00a0 : \u00a0\u00a0 \u00a0none<br \/>\nLast Ping6\u00a0\u00a0 \u00a0\u00a0\u00a0 \u00a0\u00a0\u00a0 \u00a0\u00a0\u00a0 \u00a0\u00a0\u00a0 \u00a0\u00a0\u00a0 : \u00a0\u00a0 \u00a0none<br \/>\nLast Inbound Packet\u00a0\u00a0 : \u00a0\u00a0 \u00a0none<br \/>\nRegistration Date\u00a0 \u00a0\u00a0\u00a0 \u00a0\u00a0 : \u00a0\u00a0 \u00a0Sun, Aug 19, 2007<br \/>\n<\/strong><br \/>\n<span style=\"text-decoration:underline\"><strong><br \/>\nJika anda mendaftar, Account anda baru bisa aktif dalam 1&#215;24 Jam<\/strong><\/span><\/p>\n<p>OK karena gue udah dapet account di tunnelbroker, langsung aja pake account tsb<br \/>\ncaranya adalah sbb;<\/p>\n<p><strong>router-inherent# <\/strong>ifconfig gif0 create<br \/>\n<strong>router-inherent# <\/strong>ifconfig gif0 tunnel 222.124.196.97 64.71.128.83<br \/>\n<strong>router-inherent# <\/strong>ifconfig gif0 inet6 2001:470:1F03:37d::2 2001:470:1F03:37d::1 prefixlen 128<br \/>\n<strong>router-inherent# <\/strong>route -n add -inet6 default 2001:470:1F03:37d::1<br \/>\n<strong>router-inherent# <\/strong>ifconfig gif0 up<\/p>\n<p>atau langsung klik Example Configs dari profil account anda di web <strong>tunnelbroker<\/strong>.<\/p>\n<p>agar setting tsb permanen, dan diload pada saat startup server,<br \/>\nkita perlu modifikasi file <strong>\/etc\/rc.conf<\/strong><\/p>\n<p>######### Cutedd #######################<br \/>\n<strong>quagga_enable=&#8221;YES&#8221;<br \/>\nquagga_flags=&#8221;-d&#8221;<br \/>\nquagga_daemons=&#8221;bgpd zebra ripd ospfd&#8221;<\/p>\n<p># Bagian IPV6<br \/>\nipv6_enable=&#8221;YES&#8221;<br \/>\nipv6_network_interfaces=&#8221;auto&#8221;<br \/>\nipv6_defaultrouter=&#8221;2001:470:1F03:37c::1&#8243;<br \/>\nipv6_router_enable=&#8221;YES&#8221;<br \/>\nipv6_router=&#8221;\/usr\/sbin\/route6d&#8221;<br \/>\nipv6_gateway_enable=&#8221;YES&#8221;<br \/>\nipv6_ifconfig_rl0=&#8221;2001:470:1F03:37c::2 prefixlen 128&#8243;<\/p>\n<p>gif_interfaces=&#8221;gif0 gif1 gif2 gif3&#8243;<br \/>\ngifconfig_gif0=&#8221;222.124.196.102 64.71.128.83&#8243;<br \/>\nipv6_ifconfig_gif0=&#8221;2001:470:1F03:37d::2&#8243;<\/strong><\/p>\n<p>########## Cutedd ########################<\/p>\n<p>Ok Sip reboot server anda , dan cek koneksi ke site yang udah support IPv6<\/p>\n<p><strong>router-inherent<\/strong><strong>~&gt;ping6 www.itb.ac.id<\/strong><br \/>\nPING6(56=40+8+8 bytes) 2001:470:1f03:37d::2 &#8211;&gt; 2001:d30:3:508::136<br \/>\n16 bytes from 2001:d30:3:508::136, icmp_seq=0 hlim=49 time=874.248 ms<br \/>\n16 bytes from 2001:d30:3:508::136, icmp_seq=1 hlim=49 time=842.328 ms<br \/>\n16 bytes from 2001:d30:3:508::136, icmp_seq=2 hlim=50 time=845.175 ms<br \/>\n16 bytes from 2001:d30:3:508::136, icmp_seq=3 hlim=50 time=814.509 ms<br \/>\n^C<br \/>\n&#8212; www.itb.ac.id ping6 statistics &#8212;<br \/>\n4 packets transmitted, 4 packets received, 0.0% packet loss<br \/>\nround-trip min\/avg\/max\/std-dev = 814.509\/844.065\/874.248\/21.147 ms<\/p>\n<p><strong>router-inherent<\/strong><strong> ~&gt;ping6 kame.net<\/strong><br \/>\nping6: hostname nor servname provided, or not known<br \/>\nns1 ~&gt;ping6 www.kame.net<br \/>\nPING6(56=40+8+8 bytes) 2001:470:1f03:37d::2 &#8211;&gt; 2001:200:0:8002:203:47ff:fea5:3085<br \/>\n16 bytes from 2001:200:0:8002:203:47ff:fea5:3085, icmp_seq=0 hlim=54 time=657.554 ms<br \/>\n16 bytes from 2001:200:0:8002:203:47ff:fea5:3085, icmp_seq=1 hlim=54 time=683.585 ms<br \/>\n16 bytes from 2001:200:0:8002:203:47ff:fea5:3085, icmp_seq=2 hlim=55 time=638.274 ms<br \/>\n^C<br \/>\n&#8212; www.kame.net ping6 statistics &#8212;<br \/>\n4 packets transmitted, 3 packets received, 25.0% packet loss<br \/>\nround-trip min\/avg\/max\/std-dev = 638.274\/659.804\/683.585\/18.566 ms<br \/>\nns1 ~&gt;<\/p>\n<p><strong>router-inherent ~&gt;traceroute6 www.itb.ac.id<\/strong><br \/>\ntraceroute6 to www.itb.ac.id (2001:d30:3:508::136) from 2001:470:1f03:37d::2, 64 hops max, 12 byte packets<br \/>\n1\u00a0 unila.tunnel.tserv2.fmt.ipv6.he.net\u00a0 539.592 ms\u00a0 622.312 ms\u00a0 536.972 ms<br \/>\n2\u00a0 2001:470:0:1f::1\u00a0 544.779 ms\u00a0 579.046 ms\u00a0 705.310 ms<br \/>\n3\u00a0 2001:470:0:2c::1\u00a0 574.309 ms\u00a0 636.062 ms\u00a0 732.636 ms<br \/>\n4\u00a0 2001:470:0:2f::2\u00a0 587.534 ms\u00a0 736.939 ms\u00a0 630.455 ms<br \/>\n5\u00a0 2001:504:0:1::2497:1\u00a0 579.649 ms\u00a0 607.757 ms\u00a0 632.991 ms<br \/>\n6\u00a0 2001:48b0:bb00:f005::14\u00a0 810.049 ms\u00a0 824.113 ms\u00a0 879.552 ms<br \/>\n7\u00a0 tky001bb00.IIJ.Net\u00a0 849.526 ms\u00a0 827.604 ms\u00a0 837.802 ms<br \/>\n8\u00a0 tky001ix10.IIJ.Net\u00a0 916.215 ms\u00a0 841.055 ms\u00a0 874.527 ms<br \/>\n9\u00a0 pc6.otemachi.wide.ad.jp\u00a0 857.478 ms\u00a0 831.989 ms\u00a0 834.409 ms<br \/>\n10\u00a0 2001:200:0:1802:20c:dbff:fe1f:7200\u00a0 719.497 ms\u00a0 797.669 ms\u00a0 718.621 ms<br \/>\n11\u00a0 foundry1.fujisawa.wide.ad.jp\u00a0 745.826 ms\u00a0 719.167 ms\u00a0 695.979 ms<br \/>\n12\u00a0 ge1-0-100.cisco1.fujisawa.wide.ad.jp\u00a0 735.304 ms\u00a0 918.998 ms\u00a0 777.147 ms<br \/>\n13\u00a0 sfc-gate.ai3.net\u00a0 784.662 ms\u00a0 779.969 ms\u00a0 781.766 ms<br \/>\n14\u00a0 itb1-v6-router.itb.ac.id\u00a0 898.357 ms\u00a0 888.773 ms\u00a0 928.287 ms<br \/>\n15\u00a0 AI3-NOC.PAU-Cat6.Vlan.itb.ac.id\u00a0 902.033 ms\u00a0 1115.452 ms\u00a0 1504.171 ms<br \/>\n16\u00a0 itb2-v6-router.itb.ac.id\u00a0 973.283 ms\u00a0 917.063 ms\u00a0 1243.515 ms<br \/>\n17\u00a0 itb5-v6-router.itb.ac.id\u00a0 952.437 ms\u00a0 934.330 ms\u00a0 1004.583 ms<br \/>\n18\u00a0 www.itb.ac.id\u00a0 1539.625 ms\u00a0 946.367 ms\u00a0 1137.507 ms<br \/>\nns1 ~&gt;<\/p>\n<p><strong>router-inherent ~&gt;traceroute6 www.kame.net<\/strong><br \/>\ntraceroute6 to www.kame.net (2001:200:0:8002:203:47ff:fea5:3085) from 2001:470:1f03:37d::2, 64 hops max, 12 byte packets<br \/>\n1\u00a0 unila.tunnel.tserv2.fmt.ipv6.he.net\u00a0 657.767 ms\u00a0 651.306 ms\u00a0 651.790 ms<br \/>\n2\u00a0 2001:470:0:1f::1\u00a0 660.996 ms\u00a0 651.035 ms\u00a0 700.221 ms<br \/>\n3\u00a0 2001:470:0:2c::1\u00a0 631.751 ms\u00a0 652.123 ms\u00a0 748.934 ms<br \/>\n4\u00a0 2001:470:0:2f::2\u00a0 642.458 ms\u00a0 637.262 ms\u00a0 619.501 ms<br \/>\n5\u00a0 2001:504:0:1::2497:1\u00a0 694.685 ms\u00a0 626.189 ms\u00a0 620.796 ms<br \/>\n6\u00a0 2001:48b0:bb00:f005::14\u00a0 803.121 ms\u00a0 924.459 ms\u00a0 870.305 ms<br \/>\n7\u00a0 tky001bb00.IIJ.Net\u00a0 959.271 ms\u00a0 918.264 ms\u00a0 934.759 ms<br \/>\n8\u00a0 tky001ix10.IIJ.Net\u00a0 1336.225 ms\u00a0 1247.022 ms\u00a0 838.785 ms<br \/>\n9\u00a0 hitachi1.otemachi.wide.ad.jp\u00a0 754.853 ms\u00a0 721.097 ms\u00a0 822.034 ms<br \/>\n10\u00a0 2001:200:0:1802:20c:dbff:fe1f:7200\u00a0 782.309 ms\u00a0 774.268 ms\u00a0 854.438 ms<br \/>\n11\u00a0 ve-4.nec2.yagami.wide.ad.jp\u00a0 894.672 ms\u00a0 828.339 ms\u00a0 826.645 ms<br \/>\n12\u00a0 lo0.alaxala1.k2.wide.ad.jp\u00a0 892.775 ms\u00a0 803.713 ms\u00a0 888.505 ms<br \/>\n13\u00a0 orange.kame.net\u00a0 1199.800 ms\u00a0 757.115 ms\u00a0 768.367 ms<br \/>\nns1 ~&gt;<\/p>\n<p><strong><br \/>\nOK Beres, selamat IPV6 sudah jalan di mesin BSD anda<\/p>\n<p>Next on my blog<br \/>\n&#8211;\u00a0 Quagga on IPv6<br \/>\n&#8211;\u00a0 NS on IPv6<\/p>\n<p>Please Wait<br \/>\n<\/strong><br \/>\n<!--more--><!--more--><\/p>\n","protected":false},"excerpt":{"rendered":"<p>IPv6 adalah keluarga protokol TCP\/IP yang baru, dan diproyeksikan akan menggantikan IPv4 yang telah menjadi standar de-facto protokol komunikasi di Internet. Beberapa keterbatasan yang ada pada pendahulunya telah di perbaiki pada protokol baru ini, seperti keleluasaan ruang pengalamatan, security yg lebih baik dengan masuknya IPSec dalam protokol requirement, adanya extension header yg memberi fleksibilitas terhadap &hellip; <a href=\"https:\/\/dosen.unila.ac.id\/gigih\/2011\/02\/09\/tunneling-ipv6-on-bsd-6-2\/\" class=\"more-link\">Continue reading<span class=\"screen-reader-text\"> &#8220;Tunneling IPv6 on BSD 6.2&#8221;<\/span><\/a><\/p>\n","protected":false},"author":25,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1348,5],"tags":[],"class_list":["post-96","post","type-post","status-publish","format-standard","hentry","category-kiat-sukses-menjadi-seorang-network-engineer-2","category-old-post-dari-unilanet"],"_links":{"self":[{"href":"https:\/\/dosen.unila.ac.id\/gigih\/wp-json\/wp\/v2\/posts\/96"}],"collection":[{"href":"https:\/\/dosen.unila.ac.id\/gigih\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/dosen.unila.ac.id\/gigih\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/dosen.unila.ac.id\/gigih\/wp-json\/wp\/v2\/users\/25"}],"replies":[{"embeddable":true,"href":"https:\/\/dosen.unila.ac.id\/gigih\/wp-json\/wp\/v2\/comments?post=96"}],"version-history":[{"count":0,"href":"https:\/\/dosen.unila.ac.id\/gigih\/wp-json\/wp\/v2\/posts\/96\/revisions"}],"wp:attachment":[{"href":"https:\/\/dosen.unila.ac.id\/gigih\/wp-json\/wp\/v2\/media?parent=96"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/dosen.unila.ac.id\/gigih\/wp-json\/wp\/v2\/categories?post=96"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/dosen.unila.ac.id\/gigih\/wp-json\/wp\/v2\/tags?post=96"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}