On Mon, Jul 15, 2024 at 6:33 AM Irreverent Monk <[email protected]> wrote:
> pass in on egress inet6 proto icmp6 all \
>
> icmp6-type { routeradv neighbrsol neighbradv }
>
> pass in on egress inet6 proto udp \
>
> from fe80::/10 port dhcpv6-server \
>
> to fe80::/10 port dhcpv6-client \
>
> no state
>
>
> block all
>
I don't know if this is related to your other issues, but I think the
"block all" here is
cancelling the effect of your inet6 rules.
-ken

