<!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"><html><head><meta content="text/html;charset=UTF-8" http-equiv="Content-Type"></head><body ><div style='font-size:10pt;font-family:Verdana,Arial,Helvetica,sans-serif;'>Hi Fernando, <br><br>The mikrotik hotspot works the same way with IPv6 as with ipv4. There Are Rules which inspect the packets on an interface regardless of protocol and Mark those packets in a way that allows access only to the sign up or login page. That page is accessed first by reference to the internal DNS records on the mikrotik, which could be theoretically be quad-a records.<br><br>The actual authorization query to a separate radius server might be in ipv4, but once the username and password are correct, then packets for either protocol on that interface from the same Mac address will be allowed to pass to the internet.<br><br>I haven't set one up, but I don't think there are significant issues theoretically anyway.<br><br>Regards,<br>Mike<br><br><br><div id="message"></div><br id="br3"><div id="signature"></div><div id="content"><br> ---- On Mon, 27 May 2019 10:28:15 -0400 <b> fhfrediani@gmail.com </b> wrote ----<br><br><blockquote style="border-left: 1px solid rgb(204, 204, 204); padding-left: 6px; margin-left: 5px;"><meta>
<div class=" zm_-8394467643299900215_parse_-5858202116649093296">
<p>Hello guys</p>
<p>Thanks all for the reply about your experiences.</p>
<p>However the main point of my message is to know if someone has
solved the issue about IPv6 and Hotspot systems.<br>
Normally on these systems before the users authenticates in a kind
of web form the Internet connectivity is blocked, with exceptions
to certain destinations as DNS and payment gateways sometimes and
afterwards released for navigation. This relies heavily on NAT and
redirection techniques so why I would like to find out how it can
be adapted when IPv6 is present in such scenarios.</p>
<p>Thanks<br>
Regards<br>
Fernando Frediani<br>
</p>
<div class="x_-1784568926moz-cite-prefix">On 25/05/2019 16:34, JORDI PALET
MARTINEZ via LACNOG wrote:<br>
</div>
<blockquote>
<meta>
<meta>
<style></style>
<div class="x_-1784568926WordSection1">
<p class="MsoNormal"><span style="font-size:12.0pt;">Today it doesn’t make sense at all to deploy
dual-stack WAN links.</span></p>
<p class="MsoNormal"><span style="font-size:12.0pt;"> </span></p>
<p class="MsoNormal"><span style="font-size:12.0pt;">Dual-stack in the LANs (WiFi) is fine, but this
should be done using any of the IPv6 and IPv4-as-a-Service
mechanisms as described in RFC8585.</span></p>
<p class="MsoNormal"><span style="font-size:12.0pt;"> </span></p>
<p class="MsoNormal"><span style="font-size:12.0pt;">I also suggest to read:</span></p>
<p class="MsoNormal"><a href="https://datatracker.ietf.org/doc/draft-ietf-v6ops-nat64-deployment/" target="_blank"><span>https://datatracker.ietf.org/doc/draft-ietf-v6ops-nat64-deployment/</span></a><span></span></p>
<p class="MsoNormal"><span style="font-size:12.0pt;">(hopefully soon to become an RFC as well)</span></p>
<p class="MsoNormal"><span style="font-size:12.0pt;"> </span></p>
<p class="MsoNormal"><span style="font-size:12.0pt;">Unfortunately, at the time being, MikroTik is
the WORST platform in the world for IPv6 deployment, unless
you use dual-stack all the way thru, again totally
anachronic and expensive way of doing it, as it forces you
to have sufficient IPv4 addresses or CGN, or even worst,
both of them.</span></p>
<p class="MsoNormal"><span style="font-size:12.0pt;"> </span></p>
<p class="MsoNormal"><span style="font-size:12.0pt;">Re-flash your MikroTik’s with OpenWRT and
you’re done!</span></p>
<div>
<p class="MsoNormal"><span style="font-size:10.5pt;color:black;"><br>
Regards,</span></p>
<p class="MsoNormal" style="margin-bottom:12.0pt;"><span style="font-size:10.5pt;color:black;">Jordi</span></p>
<p class="MsoNormal" style="margin-bottom:12.0pt;"><span style="font-size:10.5pt;color:black;"> </span></p>
</div>
<p class="MsoNormal"><span style="font-size:12.0pt;"> </span></p>
<p class="MsoNormal"><span style="font-size:12.0pt;"> </span></p>
<div>
<div>
<p class="MsoNormal" style="margin-left:35.4pt;">El 25/5/19
17:31, "LACNOG en nombre de Mike Burns" <<a href="mailto:lacnog-bounces@lacnic.net" target="_blank">lacnog-bounces@lacnic.net</a> en
nombre de <a href="mailto:mike@iptrading.com" target="_blank">mike@iptrading.com</a>>
escribió:</p>
</div>
</div>
<div>
<p class="MsoNormal" style="margin-left:35.4pt;"> </p>
</div>
<div>
<p class="MsoNormal" style="margin-left:35.4pt;"><span style="font-size:10.0pt;font-family:"Verdana",sans-serif;">Hi,
the authentication process is independent of the IP
address protocol, it is based upon the router interface.
Mikrotik used to not include their IPv6 package by
default, and we had problems running IPv6 to ipv4 tunnels
effectively. We wanted to do Transit with the IPv6 not
just management although that would have been easier. <br>
<br>
But the problem I explained, which is that nobody has
asked for it, is the same reason why IpV6 is not more
widely deployed. It will cost me time and effort to do the
deployment and if there is no reward, then there is little
incentive. I thought there might be a public relations
benefit to announcing that our system is fully dual
stacked, but my customers who are mostly temporary don't
really seem to care one way or the other.<br>
<br>
It would be easier for us if each of the upstream isps at
all of our Wi-Fi locations was offering IPv6. But normally
hotspot providers do not run their own backbones but rely
on others and just distribute the internet over the last
few hundred feet to the customers.<br>
<br>
I am not sure if there would need to be more customer
support with a dual stack offering, but hotspot clients
as I said are temporary, and it's difficult and expensive
to try to offer them in-depth technical support. So I
think hotspot providers try to keep it simple as a rule.<br>
<br>
Finally, we began deploying our Network devices more than
12 years ago and some of them are not firmware upgradeable
to handle IPv6.<br>
<br>
Regards,<br>
Mike</span></p>
<p class="MsoNormal" style="margin-left:35.4pt;"><span style="font-size:10.0pt;font-family:"Verdana",sans-serif;"> </span></p>
<div id="x_-1784568926content">
<p class="MsoNormal" style="margin-right:0cm;margin-bottom:12.0pt;margin-left:35.4pt;"><span style="font-size:10.0pt;font-family:"Verdana",sans-serif;"><br>
---- On Sat, 25 May 2019 09:39:09 -0400 <b><a class="x_-1784568926moz-txt-link-abbreviated" href="mailto:fhfrediani@gmail.com" target="_blank">fhfrediani@gmail.com</a>
</b>wrote ----</span></p>
<blockquote style="border:none;margin-left:3.75pt;margin-top:5.0pt;margin-bottom:5.0pt;">
<div>
<div>
<div>
<p class="MsoNormal" style="margin-left:35.4pt;"><span style="font-size:10.0pt;font-family:"Verdana",sans-serif;">Hello
Mike</span></p>
</div>
<div>
<p class="MsoNormal" style="margin-left:35.4pt;"><span style="font-size:10.0pt;font-family:"Verdana",sans-serif;">Thanks
for you reply.</span></p>
</div>
<div>
<p class="MsoNormal" style="margin-left:35.4pt;"><span style="font-size:10.0pt;font-family:"Verdana",sans-serif;"> </span></p>
</div>
<div>
<p class="MsoNormal" style="margin-left:35.4pt;"><span style="font-size:10.0pt;font-family:"Verdana",sans-serif;">What
do you mean by very limited ipv6 support ? Do
clients navigate over it or is it just for
management of the wireless routers ?</span></p>
</div>
<div>
<p class="MsoNormal" style="margin-left:35.4pt;"><span style="font-size:10.0pt;font-family:"Verdana",sans-serif;">If
there is navigation I wanted to undertand better
how the authentication process works in order to
release the Internet conection in both v4 and v6
afterwards and also the logging of the address
was given to a end user.</span></p>
</div>
<div>
<p class="MsoNormal" style="margin-left:35.4pt;"><span style="font-size:10.0pt;font-family:"Verdana",sans-serif;"> </span></p>
</div>
<div>
<p class="MsoNormal" style="margin-left:35.4pt;"><span style="font-size:10.0pt;font-family:"Verdana",sans-serif;">The
point about customers asking for it I have the
view that's not really a point in order to
provide IPv6 specially in a Hotspot system where
de end user knows nothing about it.</span></p>
</div>
<div>
<p class="MsoNormal" style="margin-left:35.4pt;"><span style="font-size:10.0pt;font-family:"Verdana",sans-serif;"> </span></p>
</div>
<div>
<p class="MsoNormal" style="margin-left:35.4pt;"><span style="font-size:10.0pt;font-family:"Verdana",sans-serif;">Regards</span></p>
</div>
<div>
<p class="MsoNormal" style="margin-right:0cm;margin-bottom:12.0pt;margin-left:35.4pt;"><span style="font-size:10.0pt;font-family:"Verdana",sans-serif;">Fernando</span></p>
<div>
<div>
<p class="MsoNormal" style="margin-left:35.4pt;"><span style="font-size:10.0pt;font-family:"Verdana",sans-serif;">On
Sat, 25 May 2019, 07:25 Mike Burns, <<a href="mailto:mike@iptrading.com" target="_blank">mike@iptrading.com</a>>
wrote:</span></p>
</div>
<blockquote style="border:none;margin-top:5.0pt;margin-bottom:5.0pt;">
<div>
<div>
<p class="MsoNormal" style="margin-right:0cm;margin-bottom:12.0pt;margin-left:35.4pt;"><span style="font-size:10.0pt;font-family:"Verdana",sans-serif;">We
run a network up Wi-Fi hotspots in
American RV parks. We use microtik
routers to handle the hotspot sign up
and setup and these routers have very
limited ipv6 support. In addition
because we have various internet
connections throughout the country, some
of whom do not offer ipv6, we had to use
tunnels back to our colo center from
where we advertise our ipv6 block. Since
no customers ever asked for ipv6 we
never deployed it.<br>
<br>
Regards,<br>
Mike Burns</span></p>
<p class="MsoNormal" style="margin-left:35.4pt;"><span style="font-size:10.0pt;font-family:"Verdana",sans-serif;"> </span></p>
<div id="x_535846822m_6704266770095575913content">
<p class="MsoNormal" style="margin-right:0cm;margin-bottom:12.0pt;margin-left:35.4pt;"><span style="font-size:10.0pt;font-family:"Verdana",sans-serif;"><br>
---- On Sat, 25 May 2019 05:59:05
-0400 <b><a href="mailto:fhfrediani@gmail.com" target="_blank">fhfrediani@gmail.com</a>
</b>wrote ----</span></p>
<blockquote style="border:none;margin-left:3.75pt;margin-top:5.0pt;margin-bottom:5.0pt;">
<div>
<div>
<p class="MsoNormal" style="margin-left:35.4pt;"><span style="font-size:10.0pt;font-family:"Verdana",sans-serif;">Hello
all</span></p>
<div>
<p class="MsoNormal" style="margin-left:35.4pt;"><span style="font-size:10.0pt;font-family:"Verdana",sans-serif;"> </span></p>
</div>
<div>
<p class="MsoNormal" style="margin-left:35.4pt;"><span style="font-size:10.0pt;font-family:"Verdana",sans-serif;">Has
anyone ever seen a Wifi
Hotspot system with IPv6
support ?</span></p>
</div>
<div>
<p class="MsoNormal" style="margin-left:35.4pt;"><span style="font-size:10.0pt;font-family:"Verdana",sans-serif;"> </span></p>
</div>
<div>
<p class="MsoNormal" style="margin-left:35.4pt;"><span style="font-size:10.0pt;font-family:"Verdana",sans-serif;">Apparentlly
these systems rely heavly on
NAT and so it has been a
barier for IPv6 support.</span></p>
</div>
<div>
<p class="MsoNormal" style="margin-left:35.4pt;"><span style="font-size:10.0pt;font-family:"Verdana",sans-serif;"> </span></p>
</div>
<div>
<p class="MsoNormal" style="margin-left:35.4pt;"><span style="font-size:10.0pt;font-family:"Verdana",sans-serif;">Has
anyone seen any scenario where
this has been possible or even
have a theoric idea how would
it been possible to add IPv6
to such systems ?</span></p>
</div>
<div>
<p class="MsoNormal" style="margin-left:35.4pt;"><span style="font-size:10.0pt;font-family:"Verdana",sans-serif;"> </span></p>
</div>
<div>
<p class="MsoNormal" style="margin-left:35.4pt;"><span style="font-size:10.0pt;font-family:"Verdana",sans-serif;">Thanks</span></p>
</div>
<div>
<p class="MsoNormal" style="margin-left:35.4pt;"><span style="font-size:10.0pt;font-family:"Verdana",sans-serif;">Regards</span></p>
</div>
<div>
<p class="MsoNormal" style="margin-left:35.4pt;"><span style="font-size:10.0pt;font-family:"Verdana",sans-serif;">Fernando
Frediani</span></p>
</div>
</div>
<p class="MsoNormal" style="margin-left:35.4pt;"><span style="font-size:10.0pt;font-family:"Verdana",sans-serif;">_______________________________________________
<br>
LACNOG mailing list <br>
<a href="mailto:LACNOG@lacnic.net" target="_blank">LACNOG@lacnic.net</a>
<br>
<a href="https://mail.lacnic.net/mailman/listinfo/lacnog" target="_blank">https://mail.lacnic.net/mailman/listinfo/lacnog</a>
<br>
Cancelar suscripcion: <a href="https://mail.lacnic.net/mailman/options/lacnog" target="_blank">https://mail.lacnic.net/mailman/options/lacnog</a>
</span></p>
</div>
</blockquote>
</div>
</div>
<p class="MsoNormal" style="margin-left:35.4pt;"><span style="font-size:10.0pt;font-family:"Verdana",sans-serif;"> </span></p>
</div>
<p class="MsoNormal" style="margin-left:35.4pt;"><span style="font-size:10.0pt;font-family:"Verdana",sans-serif;">_______________________________________________<br>
LACNOG mailing list<br>
<a href="mailto:LACNOG@lacnic.net" target="_blank">LACNOG@lacnic.net</a><br>
<a href="https://mail.lacnic.net/mailman/listinfo/lacnog" target="_blank">https://mail.lacnic.net/mailman/listinfo/lacnog</a><br>
Cancelar suscripcion: <a href="https://mail.lacnic.net/mailman/options/lacnog" target="_blank">https://mail.lacnic.net/mailman/options/lacnog</a></span></p>
</blockquote>
</div>
</div>
</div>
<p class="MsoNormal" style="margin-left:35.4pt;"><span style="font-size:10.0pt;font-family:"Verdana",sans-serif;">_______________________________________________
<br>
LACNOG mailing list <br>
<a href="mailto:LACNOG@lacnic.net" target="_blank">LACNOG@lacnic.net</a> <br>
<a href="https://mail.lacnic.net/mailman/listinfo/lacnog" target="_blank">https://mail.lacnic.net/mailman/listinfo/lacnog</a>
<br>
Cancelar suscripcion: <a href="https://mail.lacnic.net/mailman/options/lacnog" target="_blank">https://mail.lacnic.net/mailman/options/lacnog</a>
</span></p>
</div>
</blockquote>
</div>
</div>
<p class="MsoNormal" style="margin-left:35.4pt;"><br>
_______________________________________________ LACNOG mailing
list <a class="x_-1784568926moz-txt-link-abbreviated" href="mailto:LACNOG@lacnic.net" target="_blank">LACNOG@lacnic.net</a>
<a class="x_-1784568926moz-txt-link-freetext" href="https://mail.lacnic.net/mailman/listinfo/lacnog" target="_blank">https://mail.lacnic.net/mailman/listinfo/lacnog</a> Cancelar
suscripcion: <a class="x_-1784568926moz-txt-link-freetext" href="https://mail.lacnic.net/mailman/options/lacnog" target="_blank">https://mail.lacnic.net/mailman/options/lacnog</a> </p>
</div>
<br>
**********************************************<br>
IPv4 is over<br>
Are you ready for the new Internet ?<br>
<a class="x_-1784568926moz-txt-link-freetext" href="http://www.theipv6company.com" target="_blank">http://www.theipv6company.com</a><br>
The IPv6 Company<br>
<br>
This electronic message contains information which may be
privileged or confidential. The information is intended to be for
the exclusive use of the individual(s) named above and further
non-explicilty authorized disclosure, copying, distribution or use
of the contents of this information, even if partially, including
attached files, is strictly prohibited and will be considered a
criminal offense. If you are not the intended recipient be aware
that any disclosure, copying, distribution or use of the contents
of this information, even if partially, including attached files,
is strictly prohibited, will be considered a criminal offense, so
you must reply to the original sender to inform about this
communication and delete it.<br>
<br>
<br>
<fieldset class="x_-1784568926mimeAttachmentHeader"></fieldset>
<pre class="x_-1784568926moz-quote-pre">_______________________________________________
LACNOG mailing list
<a class="x_-1784568926moz-txt-link-abbreviated" href="mailto:LACNOG@lacnic.net" target="_blank">LACNOG@lacnic.net</a>
<a class="x_-1784568926moz-txt-link-freetext" href="https://mail.lacnic.net/mailman/listinfo/lacnog" target="_blank">https://mail.lacnic.net/mailman/listinfo/lacnog</a>
Cancelar suscripcion: <a class="x_-1784568926moz-txt-link-freetext" href="https://mail.lacnic.net/mailman/options/lacnog" target="_blank">https://mail.lacnic.net/mailman/options/lacnog</a>
</pre>
</blockquote>
</div>
_______________________________________________
<br>LACNOG mailing list
<br>LACNOG@lacnic.net
<br>https://mail.lacnic.net/mailman/listinfo/lacnog
<br>Cancelar suscripcion: https://mail.lacnic.net/mailman/options/lacnog
<br></blockquote></div></div>
<br></body></html>