Hi all,
I have set up a SOHO network that is connected to the "IPv6 world" via a 6in4-tunnel. The tunnel works fine and all connections seem to be okay. However in my security log (logs blocked connection attempts) I keep getting messages like the following every two minutes:
Jul 19 21:10:51 server ipmon[177]: 21:10:50.505055 gif0 @0:2 b fe80::d4e0:bc -> ff02::1 PR ip len 40 (76) IN Jul 19 21:10:52 server ipmon[177]: 21:10:51.299265 gif0 @0:2 b fe80::d4e0:bc -> ff3e::beac PR ip len 40 (72) IN Jul 19 21:10:52 server ipmon[177]: 21:10:51.301948 gif0 @0:2 b fe80::d4e0:bc -> ff02::16 PR ip len 40 (476) IN Jul 19 21:10:52 server ipmon[177]: 21:10:51.311074 gif0 @0:2 b fe80::d4e0:bc -> ff1e::1:f00d:beac PR ip len 40 (72) IN Jul 19 21:10:52 server ipmon[177]: 21:10:51.311859 gif0 @0:2 b fe80::d4e0:bc -> ff02::16 PR ip len 40 (76) IN
What are these messages to tell me? I especially do not get the point of fe80::/16 (link-local) connections being labeled as INcoming connections... Has somebody got an explanation for this?
Thanks in advance, Lutz