我有一个双栈networking上的Windows 2008R2服务器。
IPv4工作正常(静态分配),但是IPv6栈运行不正常; 我已经configuration了一个静态的IPv6地址( ::bbbb:150下面),但它也从我的DHCPv6服务器( ::babe:e3a0下面)获得租约。
它也用于自动configuration自动地址,直到我禁用RA发现。
这会导致外部防火墙出现问题,因为DNS名称parsing为多个地址,所以防火墙规则全部混淆,因为它只能为其中一个地址创build规则,而这些地址可能是也可能不是通信的来源!
如何防止NIC获得IPv6 DHCP租约?
注意:IPv6正在这个主机上工作,只需要两倍的地址! 我有另一个Win2k8R2服务器,不会显示此行为; 它只有静态地址(v4和v6)。
Windows IP Configuration Host Name . . . . . . . . . . . . : SVR-APP-WIN1 Primary Dns Suffix . . . . . . . : xxxxxx.local Node Type . . . . . . . . . . . . : Hybrid IP Routing Enabled. . . . . . . . : No WINS Proxy Enabled. . . . . . . . : No DNS Suffix Search List. . . . . . : xxxxxx.local ftg.mycompany.com.au Ethernet adapter IDMZ Team: Connection-specific DNS Suffix . : ftg.mycompany.com.au Description . . . . . . . . . . . : IDMZ Team Physical Address. . . . . . . . . : 2C-76-8A-A9-66-10 DHCP Enabled. . . . . . . . . . . : No Autoconfiguration Enabled . . . . : Yes IPv6 Address. . . . . . . . . . . : 2001:44b8:4126:xxxx::babe:e3a0(Preferred) Lease Obtained. . . . . . . . . . : Friday, 16 March 2012 12:39:49 PM Lease Expires . . . . . . . . . . : Wednesday, 18 April 2012 9:40:03 AM IPv6 Address. . . . . . . . . . . : 2001:44b8:4126:xxxx::bbbb:150(Preferred) Link-local IPv6 Address . . . . . : fe80::99fb:d357:65fb:219e%16(Preferred) IPv4 Address. . . . . . . . . . . : 172.31.0.150(Preferred) Subnet Mask . . . . . . . . . . . : 255.255.255.128 Default Gateway . . . . . . . . . : 2001:44b8:4126:xxxx::f0 172.31.0.254 DHCPv6 IAID . . . . . . . . . . . : 388789898 DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-16-3A-4A-A0-2C-76-8A-A9-66-11 DNS Servers . . . . . . . . . . . : 2001:44b8:4126:xxxx::f1 2001:44b8:4126:xxxx::f2 172.31.0.254 172.31.1.11 NetBIOS over Tcpip. . . . . . . . : Enabled Connection-specific DNS Suffix Search List : ftg.mycompany.com.au xxxxxx.local Tunnel adapter isatap.{374F349C-612A-4FCF-A06D-F14D0BA1E616}: Media State . . . . . . . . . . . : Media disconnected Connection-specific DNS Suffix . : ftg.mycompany.com.au Description . . . . . . . . . . . : Microsoft ISATAP Adapter Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0 DHCP Enabled. . . . . . . . . . . : No Autoconfiguration Enabled . . . . : Yes Tunnel adapter Local Area Connection* 11: Media State . . . . . . . . . . . : Media disconnected Connection-specific DNS Suffix . : Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0 DHCP Enabled. . . . . . . . . . . : No Autoconfiguration Enabled . . . . : Yes
运行netsh并禁用一些选项将在这种情况下做的伎俩。
# This is what I did last week to stop the AutoConf address being added netsh interface ipv6 set interface "IDMZ Team" routerdiscovery=disabled # This stops the interface from obtaining DHCPv6 lease netsh interface ipv6 set interface "IDMZ Team" managedaddress=disabled netsh interface ipv6 set interface "IDMZ Team" otherstateful=disabled