cross-posted from: https://lemmy.world/post/3754933
While experimenting with ProtonVPN’s Wireguard configs, I realized that my real IPv6 address was leaking while IPv4 was correctly going through the tunnel. How do I prevent this from happening?
I’ve already tried adding
::/0
to theAllowedIPs
option and IPv6 is listed as disabled in the NetworkManager profile.
That’s what I am trying to do with the
::/0
option but it doesn’t seem to work. I am guessing because the tunnel itself doesn’t have IPv6?Add a dummy IPv6 on the WireGuard interface, like a completely random fd00::/128 address on it so it thinks it’s IPv6 enabled. It’ll then just go nowhere as the remote end won’t accept it. You can then drop it at the firewall level before it goes into the tunnel to save some bandwidth.