Support for IPv6 Firewall and UPnP/PCP for most TP-Link firmwares
Support for IPv6 Firewall and UPnP/PCP for most TP-Link firmwares
Hello.
Please add support for IPv6 Firewall for most TP-Link routers otherwise users cannot allow incoming connections towards their devices in the LAN with IPv6 Addresses.
So far the users were used to do this for IPv4 on the "Virtual Servers" under NAT Forwarding in most firmwares, but in IPv6 it works differently and you must have a separate section to allow them to control the connections that pass through the router towards the LAN devices with IPv6 addresses and a simple IPv6 Firewall interface.
Also please upgrade your UPnP daemon in running in the firmware to a newer version that supports PCP (Port Control Protocol - RFC6887 (https://tools.ietf.org/html/rfc6887)) and IPv6 and allows applications to request an automatic placement of a IPv6 rules to allow connection towards their devices with IPv6 addresses.
This is crucial in order to get all TP-Link routers more IPv6 Ready with all kind of scenarios as IPv6 becomes even more present in most scenarios. As many ISPs are supplying CGNAT IPv4 addresses (therefore private addresses) the only way to have a incoming connectiong to a home or business device is via IPv6 and without these two functions it is not possible at all.
- Copy Link
- Subscribe
- Bookmark
- Report Inappropriate Content
- Copy Link
- Report Inappropriate Content
Hallo zusammen,
ich habe das selbe Problem bei einem Archer VR600v. Die IPV6 Firewall Regeln sind unbrauchbar, bzw. müssen alle 24h neu konfiguriert werden, da sich bei jeder einwahl der Prefix ändert.
Gibt es neue Informationen wann ein Firmware update zu erwarten ist, bei dem der Prefix in den IPV6 Firewallregeln dynamisch anhand des vom Provider vergebenen Prefix angepasst wird?
Sehr schön wäre es auch wenn die Firmware den UPNP Service WANIPv6FirewallControl (http://upnp.org/specs/gw/UPnP-gw-WANIPv6FirewallControl-v1-Service.pdf) unterstützen würde.
Die IPV6 Firewall komplett zu deaktivieren ist meiner Meinung nach kein sinnvoller workaround da diese ja durchaus ihre berechtigung besitzt.
Hello,
i have the same problem with an Archer VR600v V2. The IPv6 firewall rules are completly useless as they have to be reconfigured every 24h because i get a new prefix from my provider.
Are there any information on when or if there will be a new firmeware available that will handle the prefix dynamic according to the prefix given by the isp?
Also it would help if the new firmware would support the UPnP service WANIPv6FirewallControl (http://upnp.org/specs/gw/UPnP-gw-WANIPv6FirewallControl-v1-Service.pdf).
- Copy Link
- Report Inappropriate Content
- Copy Link
- Report Inappropriate Content
LeandroBecker wrote
Sadly the solution is to buy a router from the competitors next time. There are many right now with a decent ipv6 firewall configuration.
Hello @LeandroBecker, thank you very much for bring this up again.
Actually, we do have Archer AX10 supports IPv6 Firewall feature now, you may check the Release Note on the firmware download page as follows:
https://www.tp-link.com/us/support/download/archer-ax10/v1/#Firmware
I believe others models will gradually support the IPv6 Firewall in the future, you may keep an eye on the router web GUI or the Tether app for any newer firmware release.
- Copy Link
- Report Inappropriate Content
@Kevin_Z Is there any news on this? I'm having the same issue with my Archer C5.
- Copy Link
- Report Inappropriate Content
Information
Helpful: 9
Views: 7173
Replies: 15