From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on aws-us-west-2-korg-lkml-1.web.codeaurora.org X-Spam-Level: X-Spam-Status: No, score=-3.8 required=3.0 tests=BAYES_00, HEADER_FROM_DIFFERENT_DOMAINS,MAILING_LIST_MULTI,SPF_HELO_NONE,SPF_PASS, URIBL_BLOCKED autolearn=no autolearn_force=no version=3.4.0 Received: from mail.kernel.org (mail.kernel.org [198.145.29.99]) by smtp.lore.kernel.org (Postfix) with ESMTP id 6BED6C432BE for ; Mon, 30 Aug 2021 16:43:21 +0000 (UTC) Received: from lists.zx2c4.com (lists.zx2c4.com [165.227.139.114]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by mail.kernel.org (Postfix) with ESMTPS id DE98460E90 for ; Mon, 30 Aug 2021 16:43:19 +0000 (UTC) DMARC-Filter: OpenDMARC Filter v1.4.1 mail.kernel.org DE98460E90 Authentication-Results: mail.kernel.org; dmarc=none (p=none dis=none) header.from=romanrm.net Authentication-Results: mail.kernel.org; spf=pass smtp.mailfrom=lists.zx2c4.com Received: by lists.zx2c4.com (ZX2C4 Mail Server) with ESMTP id f6fc2259; Mon, 30 Aug 2021 16:43:17 +0000 (UTC) Received: from rin.romanrm.net (rin.romanrm.net [51.158.148.128]) by lists.zx2c4.com (ZX2C4 Mail Server) with ESMTPS id fa184101 (TLSv1.3:AEAD-AES256-GCM-SHA384:256:NO) for ; Mon, 30 Aug 2021 16:43:13 +0000 (UTC) Received: from natsu (natsu2.home.romanrm.net [IPv6:fd39::e99e:8f1b:cfc9:ccb8]) by rin.romanrm.net (Postfix) with SMTP id 081DF5D4; Mon, 30 Aug 2021 16:43:12 +0000 (UTC) Date: Mon, 30 Aug 2021 21:43:12 +0500 From: Roman Mamedov To: Daniel Cc: wireguard@lists.zx2c4.com Subject: Re: [Warning: DMARC Fail Email] Re: ipv6 connexion fail - ipv4 OK Message-ID: <20210830214312.6a332333@natsu> In-Reply-To: <7437f3e0-26ba-5e33-a175-0cf233635b3f@tootai.net> References: <20210827211412.3ed5f170@natsu> <3ec547c6-c846-e5be-e276-ace7862f5cb7@tootai.net> <34d4341c-98be-b754-af8e-c7097bc21aac@pineview.net> <20210828024454.1766744f@natsu> <7437f3e0-26ba-5e33-a175-0cf233635b3f@tootai.net> MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: quoted-printable X-BeenThere: wireguard@lists.zx2c4.com X-Mailman-Version: 2.1.30rc1 Precedence: list List-Id: Development discussion of WireGuard List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: wireguard-bounces@lists.zx2c4.com Sender: "WireGuard" On Mon, 30 Aug 2021 12:24:01 +0200 Daniel wrote: > Using tcpdump -i any I see the trafic coming to the gre interface and=20 > that's all. But netstat show >=20 > udp6=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 = 0 :::12345 :::*=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0= =C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2= =A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=20 > 0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 125391=C2=A0=C2= =A0=C2=A0=C2=A0 - >=20 > and ps aux output is >=20 > dh@peech:~$ ps ax|grep wg > =C2=A0=C2=A0 6969 ?=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 I<=C2=A0= =C2=A0=C2=A0=C2=A0 0:00 [wg-crypt-wig4to] > =C2=A0=C2=A0 7026 ?=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 I=C2=A0=C2= =A0=C2=A0=C2=A0=C2=A0 0:00 [kworker/1:2-wg-kex-wig4tootai] >=20 > Question: is wireguard really listening on all ipv6 addresses ? If not,=20 > how is the address choosen ? Yes it does. You seem to have some very complex setup, I suggest to look into whether you send replies from the interface you expect them to. If you use wg-quick, ma= ybe switch to just wg and set up manually and with careful intent of each actio= n, as wg-quick might not have in mind some aspect of your setup. --=20 With respect, Roman