Back to Top

How to disable DHCP ipv6 on Cisco DPC3939B? DNS settings?

SOLVED
Highlighted
Member

How to disable DHCP ipv6 on Cisco DPC3939B? DNS settings?

[ Edited ]

I need to do a new fresh install of Windows Server 2012 R2 Essentials on a new small office server.

I need the server to be my Domain Controller and DHCP (not the router).

Before installing, I need to disable DHCP of both ipv4 and ipv6 on the router.

Obviously ipv4 is straight forward, but ipv6 is NOT.

I am not at the router right now, so cannot remember the exact settings, but I think BOTH Stateful and Stateless were checked? I don't know what these mean and is quite easily confusing.

EDIT:

Stateless (Auto-Config) is checked (but grayed out, cannot change?)

Stateful (Use Dhcp Server) is checked

BOTH Assign DNS manually for IPv4 and IPv6 are UNCHECKED..  should these be checked and filled in with exactly what?  IPv6 entries are obviously crazy here..have NO idea what to do with IPv6.

Something about Stateful being like static? And Stateless being like DHCP? Is this correct?

What should exactly be set here to disable DHCP ipv6?

I think the first setting to the far left was grayed out but checked.

Do I even need to mess with the router's ipv6 to have the Server to DHCP and as a DC and for Active Directory? I understand that it is time to start using ipv6, so not sure I need to be cutting all that off? But do not understand ipv6.

Also, while in here, do I need to set the DNS MANUALLY also? And for BOTH ipv4 and ipv6?

What primary and secondary DNS servers do u enter here?

Do I enter the dns of my server address as primary? And maybe secondary as google's 8.8.8.8 or openDNS dns? Or do the Comcast dns go here? I.e. 75.75.75.75?

Or do I setup up a forwarder to the the comcast primary & secondary dns on the WS2012R2E server?

Thank you for any help.

Tim

 

EDIT:

DOCSIS Software Version: dpc3939b-v303r204217-150321a-CMCST

Software Image Name: dpc3939b-v303r204217-150321a-CMCST.p7b
 
Model: DPC3939B
Vendor: Cisco
Hardware Revision: 1.0
 
Edit:
Adding a screen shot of the router config (current default settings):
Accepted Solution

Re: How to disable DHCP ipv6 on Cisco DPC3939B? DNS settings?

All you need to do is UNCHECK the DHCP Stateful.  Do NOT mess with anything else.

 

Windows Server 2012 ignores stateless DHCP IPv6 if stateful DHCP IPv6 is disabled.

 

Here is an article you should read:

 

http://windowsitpro.com/networking/ipv6-support-windows-8-windows-server-2012

 

Here's the operative paragraph:

 

"...If a DHCPv6 server is available but doesn't offer IPv6 addresses (i.e., it's configured as a stateless DHCPv6 server set up to serve clients with the o flag set and return only DNS server addresses and search suffixes), Windows will ignore it. However, if the DHCPv6 server returns an IPv6 address along with DNS server addresses and search suffixes, Windows will add the address to the interface and use the additional information..."

 

"...do I setup up a forwarder to the the comcast primary & secondary dns on the WS2012R2E server..."

 

YES!

 

You NEVER setup a DNS server to obtain a dynamic IP address via DHCP, DHCPv6, SLAAC or any other means of dynamic assignment!!!!!!!!!

 

ANY WINDOWS SERVER ACTING AS  AN ACTIVE DIRECTORY ROOT IS A DNS SERVER!!!!

 

In addition you should consider that for a COMMERCIAL SETUP LIKE A SMALL OFFICE you should USE YOUR OWN ROUTER WITH COMCAST!

 

I HIGHLY RECOMMEND that for small office setups you purchase a HIGH SPEED HIGH QUALITY SMALL ROUTER AND LOAD DD-WRT FIRMWARE ON IT!   Examples are routers like the Netgear WNDR3400.   Look for routers on the dd-wrt compatability list that have 64MB of dram and 8MB of flash.  Then buy a Dynamic DNS account from a business like no-ip.com.  dd-wrt supports this out of the box.  Use this device with YOUR OWN Cable modem that is in Bridged mode, a very good cable modem model is Motorola SB6121 or Motorola SB6141

 

This will give you the benefit of a reachable IP on the Internet (using DNS name) without having to pay extra money for a static IP, and without having to pay extra money to "rent" a cable modem from Comcast, and it will give you the control to TURN OFF IPv6 on the router and turn it on when you are ready.

 

IN ADDITION there are fewer bugs in the IPv6 implementations on these routers!

 

View solution in context
Accepted Solution

Re: How to disable DHCP ipv6 on Cisco DPC3939B? DNS settings?

No, best practices is to use .local   This is why RFC 6762 was written.  There's even a wikipedia page on .local

 

The CERT thing has always existed.  The way it works is as follows:

 

When you install Essentials or any Windows server OS it creates a self-signed certificate that is created from

the name.  So if the server is named aaa.bbb.local then the cert has that name in it.

 

In a controlled domain the client systems can have that self-signed certificate pushed to them by the

domain controller.  They incorporate it into their own certificate store and everything is fine.

 

Now along comes the admin and they want to use the webserver on the Windows server on the Internet and

serve out https pages.   They turn it on, apply aaa.bbb.com to the DNS and discover the self-signed cert

is invalid when the server is accessed from the public Internet.

 

So they go to a SSL Cert provider and buy a cert.  This is where the confusion comes from.

 

There's several different kinds of SSL certs out there.  The simplest and cheapest are the single-name certs that

are only good for aaa.bbb.com

 

The more expensive certs allow multiple domain names, usually up to 5.  Those are the ones your supposed to

buy.  You tell the SSL cert provider to list both aaa.bbb.com and aaa.bbb.local as names in that cert.  Then when you apply it, encryption works both inside and from the outside.

 

The people saying to not use .local are either completely misunderstanding things - probably because they bought a cheap cert with a single name, tried to apply it to their Windows server and it blew chunks - or they are trying to game the system by deliberately ignoring the fact that hosts on the inside that attempt to go to aaa.bbb.com are going to saturate the router with useless hairpin traffic just so they can save a few bucks on a cheap SSL cert.

View solution in context
21 REPLIES
Forum Contributor

Re: How to disable DHCP ipv6 on Cisco DPC3939B? DNS settings?

All you need to do is UNCHECK the DHCP Stateful.  Do NOT mess with anything else.

 

Windows Server 2012 ignores stateless DHCP IPv6 if stateful DHCP IPv6 is disabled.

 

Here is an article you should read:

 

http://windowsitpro.com/networking/ipv6-support-windows-8-windows-server-2012

 

Here's the operative paragraph:

 

"...If a DHCPv6 server is available but doesn't offer IPv6 addresses (i.e., it's configured as a stateless DHCPv6 server set up to serve clients with the o flag set and return only DNS server addresses and search suffixes), Windows will ignore it. However, if the DHCPv6 server returns an IPv6 address along with DNS server addresses and search suffixes, Windows will add the address to the interface and use the additional information..."

 

"...do I setup up a forwarder to the the comcast primary & secondary dns on the WS2012R2E server..."

 

YES!

 

You NEVER setup a DNS server to obtain a dynamic IP address via DHCP, DHCPv6, SLAAC or any other means of dynamic assignment!!!!!!!!!

 

ANY WINDOWS SERVER ACTING AS  AN ACTIVE DIRECTORY ROOT IS A DNS SERVER!!!!

 

In addition you should consider that for a COMMERCIAL SETUP LIKE A SMALL OFFICE you should USE YOUR OWN ROUTER WITH COMCAST!

 

I HIGHLY RECOMMEND that for small office setups you purchase a HIGH SPEED HIGH QUALITY SMALL ROUTER AND LOAD DD-WRT FIRMWARE ON IT!   Examples are routers like the Netgear WNDR3400.   Look for routers on the dd-wrt compatability list that have 64MB of dram and 8MB of flash.  Then buy a Dynamic DNS account from a business like no-ip.com.  dd-wrt supports this out of the box.  Use this device with YOUR OWN Cable modem that is in Bridged mode, a very good cable modem model is Motorola SB6121 or Motorola SB6141

 

This will give you the benefit of a reachable IP on the Internet (using DNS name) without having to pay extra money for a static IP, and without having to pay extra money to "rent" a cable modem from Comcast, and it will give you the control to TURN OFF IPv6 on the router and turn it on when you are ready.

 

IN ADDITION there are fewer bugs in the IPv6 implementations on these routers!

 

Member

Re: How to disable DHCP ipv6 on Cisco DPC3939B? DNS settings?

[ Edited ]

First off, Thank You so much for the detailed advice here, much appreciated.  It has been VERY hard to get great information on this.

 

So if I follow you correctly and by referring to my screenshot added, by just unchecking DHCP Stateful, this should disable DHCP IPV6 on the router correct?  So then the windows server would handle ipv6?  If do, I know it may be complicated there, would you know any tutorials how to set up IPV6 on the server?  I guess I would create a scope for ipv4, do you do the same for ipv6?  I am sorry, but ipv6 is so baffling to me so far until I can fully grasp it.  I hear I can have the router handle all DHCP even though the server dhcp is best practice.  Maybe just having the router handle all DHCP may be easier in my small office situation?  I guess I don't want to lose IPv6 since it is finally something of the present and future now.

 

As far as the screen shot, even though you say only unchecking the DHCP Stateful button, "Do NOT mess with anything else", do mean only in the IPV6 section?  I would still need to uncheck "Enable LAN DHCP" of IPV4 correct? And also enter the Comcast DNS servers manually correct? 75.75.75.75 & 75.75.76.76.

 

For now, can these settings be sufficient using the 3939B router without bridging it?  I really need to get the server up and running as I have lost soooo much time on this IPv6 thing.  I will definitly take your advice and look into using another router and modem and dyndns to set up a static ip. (I do have a asus ac router I could add to this if absolute need be) I don't have the comcast extetnal static ip extra cost...  for now can I just do without the static ip as I don't need to remote in to the server and I notice my external ip stays the same for a good while.  Can I set up without all of that until I can look into dyndns etc?  Or is getting / paying for a static external ip a mandatory thing getting the server up and running?  I know to set my server dns to static on the LAN in windows... but do I "have to" set up a external static ip?  Again, my small office 5 users or so.

 

Thank you again, I hope this helps others searching as I could not find much good quality advice like this.  Train_wreck has offered equal great advice also! ; )

 

 

EDIT:

Finding some good EASY to understand videos:

https://www.youtube.com/watch?v=qaWR5r7owyc

 

https://www.youtube.com/watch?v=knu0folNoCs

 

Instructor: Anthony Sequeira, CCIE,CCSI,VCP ↓↓↓↓ Click on "Show more" for timeline markers ↓↓↓↓ 00:00 introduction to IPV6 08:47 IPv6 addressing 12:12 IPv6 addressing: Syntax 16:22 IPv6 addressing: Subnet mask representation 17:19 IPv6 addressing: Network and node addressing: EUI-64 22:31 IPv6 ...
Forum Contributor

Re: How to disable DHCP ipv6 on Cisco DPC3939B? DNS settings?

[ Edited ]

"..So if I follow you correctly and by referring to my screenshot added, by just unchecking DHCP Stateful, this should disable DHCP IPV6 on the router correct?..."

 

not exactly

 

"...So then the windows server would handle ipv6?..."

 

No not exactly.

 

OK here is the way this works.

 

In an IPv6 network you have hosts and routers.  A server like a 2012 Essentials server is a host.  A router is a device like your DPC3939B

 

Routers all advertise via SLAAC and/or by DHCPv6 Stateless.  BOTH of those protocols ONLY ASSIGN ipv6 ADDRESSES and the default IPv6 gateway.  They DO NOT assign DNS server addresses, domains, etc.  SLAAC is defined in RFC 4862.

 

All 3 Comcast business gateways advertise IPv6 via SLAAC.  There is no way to turn that off.  All of them have the option to turn on DHCPv6 and that's where it gets tricky.  I'll explain in a moment.

 

So, how do hosts get IPv6 DNS servers automatically?  There are 2 ways:

 

First there's an extension to SLAAC defined in RFC 6106 that allows routers to include the extra DNS server in router advertisements.  SOME hosts pay attention to this, others do not.  Windows DOES NOT pay attention to these extra IPv6 attributes.  Older Cisco IOS versions also DO NOT pay attention to these extra attributes.  newer ones do.

 

The Comcast routers advertise these extensions.

 

Second, there is "stateful DHCPv6"

 

The way that a Windows network is supposed to do it on IPv6 is as follows:

 

1) if you DO NOT HAVE a DHCP server (ie: DHCP for IPv4) then you leave DHCPv4 turned on on the Comcast router, AND you leave DHCPv6 Stateful turned on on the Comcast router.

 

The Windows systems will get their IPv6 either by SLAAC or by DHCPv6 Stateless.  Once they have an IPv6 address they will then try a DHCPv6 Stateful query to get the IPv6 DNS servers and IPv6 default GW if needed.

 

2) If you DO HAVE a DHCP server (ie: DHCP for IPv4) then you leave DHCPv4 turn OFF on the Comcast router AND you leave DHCPv6 Stateful turned OFF on the Comcast router.

 

The Windows systems will get their IPv6 by SLAAC.  They will then attempt to get an IPv6 DNS server through DHCPv6 Stateful.  IF YOU HAVE SETUP ONLY A DHCPv4 server, this will then fail - and the Windows systems will then default to using only IPv4 DNS to lookup IPv6 addresses

 

IF YOU HAVE SETUP both a DHCPv4 and DHCPv6 server then your Windows systems will get an IPv6 via SLAAC then IPv6 DNS server via DHCPv6 Stateful.

 

AS I SAID if you are setting up an Active Directory server - which is what you are doing when you are setting up Windows 2012 Essentials - then YOU MUST MAKE THE ACTIVE DIRECTORY SERVER THE DNS AND DHCP SERVER.  That means FOR AT LEAST IPv4.  So, you MUST TURN OFF ALL DHCP SERVERS ON THE COMCAST ROUTER both the IPv4 and IPv6 DHCP Stateful server.

 

if the Comcast router is IP addresss  10.0.10.1 then the Essentials server should be 10.0.10.2.  When the Essentials server aks if it's the primary DNS server say YES.  When it asks if it's the DHCP server say YES.

 

When the Essentials server asks what the DNS Forwarder IP addresses are put in 75.75.75.75 and 75.75.76.76. 

 

That is all there is to it.  That will setup IPv4 and IPv6 on your internal network and everything will work.

 

  If you want to get fancy you can investigate how to turn on DHCPv6 services on Windows Essentials but it is not important.  Your machines will get their IPv6 addresses via SLAAC from the router and they will get their DNS servers via DHCP from the Essentials server.  Ipv6 queries will work fine they will just go over IPv4.

New Contributor

Re: How to disable DHCP ipv6 on Cisco DPC3939B? DNS settings?

First of all, I'd like to thank you for sharing the information.  In order to incorporate the renaming of our server, I reinstalled MS Server 2012 R2 Essentials following the "Elvis" post.  It worked spot on.  I also looked at the IPV6 and I felt like I was moved from the proverbial "frying pan" to the fire.  

 

I also tried configuring my 3939B modem like you had in your screen shot and following the other posters recommendations and boy did I mess something up!  If I went out to a site requesting my IP address, I get my IPV6 addres.  I also bet that I'd have to create a role on my server.

 

Thank goodness I'm not "under the gun" to get our server up and going.  But the amount of time I've got in this project is incredible and I'm stubborn enough to hand in and learn what I can. 

 

I also really have to admire the Professional IT Community.  If you can learn, retain, and make use of this information without having an office full of upset people, I salute you!

 

Regard, 

 

TG

Member

Re: How to disable DHCP ipv6 on Cisco DPC3939B? DNS settings?

My screenshot was for example only...don't use any of those settings.


Glad the DOMAIN name thing worked for you.  I eventually ahd to just reisnatll Essentials also to get it to work how I wanted.  Apaprently it is impossible to rename the .local to anything else (.com, .net, etc.) due to Certificate Authorization or soemthing.  I am sure it isn;t impossible as I did find some stuff on renaming a domain, but it was very scary and NOT recommended...so there fore bets to start from scracth...because I can at the moment...but I was quite upset after I initially set up Essentials, and found out AFTER THE FACT that .local could NOT be renamed to .com.  I was furious.  I am still glad I bought Essentials though..since small business, and can do without all those CALS etc etc.  I just use Server Manager etc to "feel" like I have the power of the Standard edition.  ANd use the Essentials part when needed.

Member

Re: How to disable DHCP ipv6 on Cisco DPC3939B? DNS settings?

[ Edited ]

Sorry, I couldn't get back sooner, just too busy.

 

Thank you for wonderful help. :0)

 

I actually do follow almost everythign you are saying... and have been learnign QUITE a bit from both you and train_wreck.

 

I guess I may be overcomplicating things.  So you don't have to rehash everything again, maybe I can just get your advice or suggestion on what I should do here based on everything you have said and my scenario.

 

Ok, before I got into this SERVER setup, I didn't really know much of anything "server-wise".  I have learned quite a bit since then.  The FIRST thing I was told was to DISABLE BOTH IPv4 and IPv6 on the ROUTER no matter what in order to set up DHCP on the Windows server.

 

So obivously, that has been my "mission".  Ipv4 was staright forward.  Disable on router, make server static 10.1.10.2, GW 10.1.10.1. Primary 10.1.10.2 (or 127.0.0.1) Secondary 8.8.8.8 or OpenDNS etc.  Good.  But NOT SURE what to put in the ROUTER, do I ENABLE "Assign DNS Manually" and enter the same Primary and Secondary?  or do I use the COMCAST servers 75.75.75.75, 75.75.76.76?  That should clear that last bit up for IPv4.

 

Now, the IPv6.  I do follow what you are saying.

 

Points 1) and 2) are obviously not what my goal is.  Goal is a AD server with BOTH Ipv4 and IPv6 set up on the SERVER, so point 1) out.  Part of Point 2) sounds closer to what I assume I need, AS LONG as BOTH IPv4 and Ipv6 are set up as you continue to describe further I see here.

 

"IF YOU HAVE SETUP both a DHCPv4 and DHCPv6 server then your Windows systems will get an IPv6 via SLAAC then IPv6 DNS server via DHCPv6 Stateful."

 

This seems my BEST option, but just not certain how to exactly accomplish this..the DHCPv6 portion of it.

 

Again, my END GOAL here is to get both IPv4 and IPv6 OFF on the ROUTER, so the SERVER can do both IPv4 and IPV6 DHCP...  simple as that really...yet again, I am probably making it harder than it should be.  I guess my biggest wall holding me up here is it just doenslt say DISABLE IPv6 on the router, and the Stateful and Stateless part is just confusing me to no end.  What I gather from your advice from the beginnign, is to just TURN OFF (or UNCHECK) Stateful (Use Dhcp Server) and I should be good to go...and as you also emntioned, do not mess with anythign else here.  I.e. even the CHECK/UNCHECK "Assign DNS manually" for IPv6?

 

So if I uncheck Stateful.  Then go to my Windows Server, set up my Ipv4 scopes and forwarders, what in the world do I enter for the SCOPE for DHCPv6 on the server?  I am lost here.  But this portion MUST be completed correct to do as you describe again here:

 

"IF YOU HAVE SETUP both a DHCPv4 and DHCPv6 server then your Windows systems will get an IPv6 via SLAAC then IPv6 DNS server via DHCPv6 Stateful."

 

Here is a screenshot that may help:

 

What Prefix goes here?  I guess there are multiple or (3) different ones that can be used?

Link-Local GW: fe80: etc? (this is just INTERNAL correct?)

Global GW: 2601: etc? (what is this?  is this something like or is the STATIC address from Comcast?)

Then maybe a documentatoin zone whih I don't understand, for testing?  2001Smiley Very HappyB8::?

 

This is where I am totally confused.  I don't know exactly what they are each for?

 

Do I enter in the Link-Local or the Global GW addresses that are in the router config Local IP network page?  On the router they are dimmed out, so obviously not for changing, but settings maybe I should be using for the WINDOWS SERVER?  I am not using a STATIC IP from Comcast nor want to. (will use one from elsewhere later as I need to).  From what I undestand Comcast is not handing out static IPv6 external ips anyways..and don't need that either....yet I guess.

 

So the Ipv6 prefix is from left to right the first (4) items?  correct? i.e. fe80:0:0:0 (yes I know the shortcut for the zeros and colons) or 2601:422:4101:700 (I changed them for security reasons if it matters)... I am not clear on all this.  I tried entering these, and it said "The prefix entered is invalid."  SO not doing something right here.

 

If I enter 2001Smiley Very HappyB8:: (for testing??), it lets me proceed to the next screen shot to add exclusions.

 

 

 

 

 

 

 

 

Don't know what to enter here:

 

 

 

Thank you again for sticking with me on this...  I am sure it isn't quite a walk in the park..but thank you.  :0)

 

!  I don't know how to turn off emoticon coding!  therefore all the smileys?

 

New Contributor

Re: How to disable DHCP ipv6 on Cisco DPC3939B? DNS settings?

I don't know how long or hard you've been studying this but you are doing exceptional.  I've not had anything go smoothly on my end.  I did take down a Secure Computing SnapGear 565 that I'm really close to bringing back on line.  The 3939B goes in Bridge Mode, and life moves on.  Is it what I really want? No.  The SnapGear is probably 8 - 10 years old, and can cause its' share of problems. 

 

There are soooooo many opinions, and only so many forums to visit to have a question "blasted", with the subsequent terse ridicule.  I work in a professional field, scientific in nature, and get asked questions all the time.  I've never ridiculed, or tried to make an example out of anyone.

 

I've tried IPV6 Statefull, Stateless, and it makes no difference on my end.  I've taken the server offline for now.  Back to the books, video's, etc... and doing what I really do for a living. 

 

However, I'd like to see you get this project up and running.  Life is too precious to waste and you've got a ton of time in it.

 

For now, I have to find a solution to the 3939B and Comcast having SMTP port 25 blocked.  For some reason the SMC modem didn't have a problem with it but the 3939B does.  I know that Comcast is blocking the port, but up until Friday my scan to email feature worked just fine.  Another stab in the heart.

 

Regards,

 

TG

Forum Contributor

Re: How to disable DHCP ipv6 on Cisco DPC3939B? DNS settings?

 

It was not my intention that you would setup DHCPv6 on the server at all (or DNS IPv6) at least not during the initial installation, as it appeared you did not want to activate IPv6 at this time.  If you do want to activate IPv6 DHCP and DNS on the server then you have a whole bunch more reading to do!  But, let me try giving you a birds eye view of IPv6 in this setup:

 

If you have a Comcast business gateway, the out-of-the-box setup is that it obtains a "public" IPv4 address from Comcast via DHCP.  This is assigned to the gateway's WAN interface.  Then a translated IPv4 address, 10.0.10.1 with a subnet 255.255.255.0 is applied to the inside LAN interface and the DHCPv4 server is turned on.

 

The gateway then obtains a /56 IPv6 subnet and assigns a /64 out of it to it's LAN interface.  Further IPv6 assignments on the LAN are /64 assignments made by SLAAC and Stateful DHCPv6

 

It is important to understand that in IPv6, you have Stateless DHCP and Stateful DHCP.  Stateless DHCP is like SLAAC in that it just assigns IP addresses.  Stateful DHCP assigns the DNS servers, etc.  An IPv6 client can obtain IPv6 addressing either via IPv6 SLAAC followed by "enhanced SLAAC" or it can obtain IPv6 addressing via Stateless DHCP followed by Stateful DHCP  Or it can do it by a mixture.

 

You cannot fully configure an IPv6 client simply by Stateless DHCP.  You cannot fully configure it by standard SLAAC either.  Stateless DHCP and regular SLAAC are basically "first stage bootstraps" used to get only the IP address.

 

By default in this setup SMTP is blocked.

 

This is a standard kind of setup for a LAN network that is composed of "client workstations"   And it works.  Out of the box Windows workstations only implement standard SLAAC and Stateless DHCP followed by Stateful DHCP.  So, in this setup a Windows workstation sets up to use IPv4 for addressing and then tries SLAAC, that works, so it drops any further attempts to use Stateless DHCP.  In effect, it sets up to use IPv4 for connectivity and DNS, and IPv6 for connectivity but not DNS

 

When you do a Windows Essentials installation, you want it to be the DNS/DHCP server for everything both IPv4 and IPv6.

 

If you don't configure the server to be a DHCPv6 server or a DNSv6 server AND you turn OFF Stateful DHCPv6 on the Comcast device then your workstations will only get IPv6 addressing from the Comcast gateway.  They won't get IPv6 DNS servers from the Comcast gateway or any other stuff.  The Server will also only get IPv6 addressing from the gateway.  As a result your network will be using IPv4 for connectivity and DNS, and IPv6 for connectivity only.  And since it will be doing IPv6 automatically you don't need to know anything about IPv6.

 

Now, IF during your Essentials installation it is not properly setting up for this, then something else is going wrong with the Server Essentials network autodetection - and you have my sympathies!  If I was tasked by a customer to solve this the first thing I would ask is "do you have a static IP" and if they said no, I would send the Comcast device back to Comcast and replace it with a "dumb" cable modem and a router set to use 192.168.1.1.  Then I would turn off IPv6 on the router, and turn off DHCP on the router, and install the server, telling it that it has a static IP of 192.168.1.10, a gateway of 192.168.1.1 and your off to the races.  Then after everything was up and running I would turn back on IPv6 on the router and see how things turned out, making any adjustments needed.

 

If the customer said YES they have a static IP then I would probably ask why.  Server Essentials is not designed to act as a server that provides services to the Internet.  If you are not providing services to the Internet then you do not need a static IP.

 

If the customer said "I want a static IP because I want to run a VPN server" or something of that nature, I would have them setup with no-ip.com and use a dynamic IP and get rid of the Comcast gateway and use a router or firewall that understood dynamic DNS and no-ip.com

 

In other words - there's hardly any situation where a SOHO office that would even consider using Server 2012 Essentials would have need to pay for a Comcast gateway.  A business is far better off with their OWN router or firewall and a "dumb" cable modem that is NOT being rented from Comcast.  The ONLY reason to justify paying rent on a Comcast gateway is if you must have a static IP address - and in those cases, you are pretty much forced into buying a static IP subnet and using your own router anyway for a variety of technical reasons.

 

And one of the biggest technical reasons I can think of is if yoru autodetection on Server 2012 Essentials is not playing well with the Comcast Cisco gateway.  If you cannot get it to properly work with IPv4 DHCP and IPv6 DHCP Stateful turned off on the Comcast Gateway, then you need to replace the gateway.

 

One last thing on naming of Window servers:

 

You MUST NOT name any Windows server with a .com name.  The ONLY acceptable name is one ending in .local

The reason for this is that .local is a special reserved DNS tld that is reserved for private networks.

A Windows Server 2012 Essentials when it is installed is installed on a private network.  It thus must have a private name.

 

Let me explain:

 

You have a domain name "gronkulators.com"

 

You want to install a Windows Server on your internal network named "wonkulating"  It's IP will be 192.168.1.5

 

You have a translating router plugged into your cable modem, with an outside IP of 34.34.34.35 and an inside IP of

192.168.1.1

 

You port forward WWW from the outside 34.34.34.35 to the inside 192.168.1.5

 

You install your Windows Server with the name "wonkulating.grohkulators.local"

 

In the INSIDE DNS you do the following:

 

wonkulating.gronkulators.local is assigned 192.168.1.5

 

 

In the OUTSIDE PUBLIC DNS you do the following:

 

wonkulating.gronkulators.com is assigned 34.34.34.35

 

 

If a host on the INSIDE tries to get to the server named "wonkulating" it is going to ALSO be using the reserved domain gronkulators.local so a simple query to "wonkulating" will be expanded to "wonkulating.gronkulators.local and the IP returned will be 192.168.1.5

 

You DO NOT configure hosts on the INSIDE to EVER use the fully expanded name of wonkulating.gronkulators.com

Because, THIS NAME only has meaning for IP address 34.34.34.35 and you do NOT want hosts on the INSIDE from sending traffic to the router just to have the router translate it and send it right back inside.

 

Whoever told you to use gronkulators.com as a domain name on the INSIDE server is an idiot.

 

ALSO, there is NO POSSIBLE WAY in the Windows universe to change the name of an active directory server UNLESS YOU REINSTALL IT.

 

Once you set the name of your Windows 2012 Server Essentials server when you install it, that name is branded not only into the server but into a dozen different internal databases because it is the master root directory server.  Microsoft has NEVER provided a utility that will root out all of those locations and rename the servername.

 

LASTLY - the word "domain" in the Windows universe DOES NOT MEAN the same thing as "domain" on the Internet.  Internet domains are like .com, .net, etc.    Microsoft domains are the old IBM Lanmanager "domains"  This terminology dates from the era when IBM actually believed that it's Lanmanager (which was built on an obsolete protocol called NetBEUI) was some sort of a competitor to Unix TCPIP and IBM deliberately use the name "domain" to FUD people about TCPIP.

 

When Microsoft implemented LanManager for OS/2 1.x under contract to IBM, they used this terminology.  Then later when Microsoft came out with Windows NT they ripped off the Lanmanager protocol for it and kept the terminology because they wanted to replace OS/2 1.x servers with NT servers.  Then years later when the Internet became important, Microsoft tried replacing Windows domains with the name CIFS but that never took.

Trusted Forum Contributor

Re: How to disable DHCP ipv6 on Cisco DPC3939B? DNS settings?

[ Edited ]

oy, NetBuoy..... I haven't heard that in a coon's age Smiley Wink

 

And to tmid1971 and ShifterKartRacer, I am working up some replies for both of you, apologies. Been moving house recently, kinda tied up with that

Forum Contributor

Re: How to disable DHCP ipv6 on Cisco DPC3939B? DNS settings?

Believe it or not NetBEUI is still to this day used in industrial setups in particular for CNC machines.  Several I can think of are the Quintax 5 axis and the 2009 Haas VF3.  These are very expensive systems that use MS-DOS-based controllers and just because Microsoft does not like something anymore does not mean that people that own these systems are simply going to throw them away on Microsoft's whims.  Incidentally we likely aren't going to see that disappear anytime soon since the problem with moving that kind of controller software to Windows is that Windows allows preemption.  When a CNC machine is cutting a metal part and the blade is moving right along the machine cannot wait 500 milliseconds for Windows to service a network interrupt or something.  That is why they still use DOS  (likely the free OpenDOS these days) for these.  Lots of old timing-critical assembly-language software buried in there.

 

The usual procedure is to run Windows 7 32 bit and find an old Windows XP system install CD and load from  VALUEADD\MSFT\NET\NETBEUI  Or find a running XP system and copy Nbf.sys to the %SYSTEMROOT%\System32\Drivers directory and copy Netnbf.inf to the %SYSTEMROOT%\Inf hidden directory.  Then add NetBEUI to networking and in Control panel, Administrative tools, local security policy, local policies, security options you search for "Network security: LAN Manager authentication level" double click it, select from pulldown menu "send LM & NTLM responses"  Often you have to turn off UAC as well.

 

I have not yet seen anyone who got it to work in 64bit mode or under windows 8 or later so don't know about that one.  In my world the industrial customers I have, have the biggest problem is with RS232.  PCs nowadays don't come with serial ports and there's only 1 serial port chipset out there (the Oxford) that I have found to work reliably under Windows 7 and it's always a crapshoot buying serial port cards since they may have that chip or they may have the MOSchip in them.  Ironically, the MOSChip (the other major serial  chip) is the only one I have found that works reliably under Linux. Most cards use cheap Chinese clone knockoffs of either of those chips which adds to the fun.

Trusted Forum Contributor

Re: How to disable DHCP ipv6 on Cisco DPC3939B? DNS settings?

[ Edited ]

yeah I hear you on the RS232; it's essential to configure many higher-end/enterprise networking equipment. i seem to remember a vendor recently getting mad that companies were counterfeit reproducing their USB-to-Serial chips, and so released a driver update that would permanently kill any "non-genuine" ones. Can't remember which one....

 

EDIT it was FTDI http://hackaday.com/2014/10/22/watch-that-windows-update-ftdi-drivers-are-killing-fake-chips/

Member

Re: How to disable DHCP ipv6 on Cisco DPC3939B? DNS settings?

Thank you for the thorough help... i will have to re-read this a couple more times...but wanted to mention something.

Not that I doubt any of your advice, but just want to make sure I myself am clear. Here are 2 links why I wanted to change my internal domain from .local .com.
http://www.mdmarra.com/2012/11/why-you-shouldnt-use-local-in-your.html?m=1

http://www.mdmarra.com/2013/04/best-practices-for-configuring-new.html?m=1

I do understand NOT to name it i.e. MYDOMAIN.com as it will conflict with the Internet domain I own (or rather lease).
I have been told by many that BEST PRACTICE "CURRENTLY" is NOT .local (due to cert signing no longer soon this year??) AND to use something like:
AD.MYDOMAIN.com (AD is obviously for Active Directory). Other suggestions were corp.mydomain.com, or internal.mydomain.com etc.

I am planning for the future also, so if my employees or me need to use a external service such as remoting in or vpn, we don't have to use a goofy name to get in and remember. I guess I'd rather have consistency in line with my Web domain name? Yes, I know the Web domain name is not the same as my local server active directory name. Your help is really awesome...but I will have to read it over to fully grasp it. ; )

Is it still wrong to this as I am not sure now.

I am at the point I can reinstall Essentials either way and will do so anyways for the autodetection you mention.
Member

Re: How to disable DHCP ipv6 on Cisco DPC3939B? DNS settings?

No hurry train_wreck!!!  I personally just appreciate ya'lls help here.  Best I have come across yet.  ; )

 

Yeah, moving is NO fun!

Forum Contributor

Re: How to disable DHCP ipv6 on Cisco DPC3939B? DNS settings?

No, best practices is to use .local   This is why RFC 6762 was written.  There's even a wikipedia page on .local

 

The CERT thing has always existed.  The way it works is as follows:

 

When you install Essentials or any Windows server OS it creates a self-signed certificate that is created from

the name.  So if the server is named aaa.bbb.local then the cert has that name in it.

 

In a controlled domain the client systems can have that self-signed certificate pushed to them by the

domain controller.  They incorporate it into their own certificate store and everything is fine.

 

Now along comes the admin and they want to use the webserver on the Windows server on the Internet and

serve out https pages.   They turn it on, apply aaa.bbb.com to the DNS and discover the self-signed cert

is invalid when the server is accessed from the public Internet.

 

So they go to a SSL Cert provider and buy a cert.  This is where the confusion comes from.

 

There's several different kinds of SSL certs out there.  The simplest and cheapest are the single-name certs that

are only good for aaa.bbb.com

 

The more expensive certs allow multiple domain names, usually up to 5.  Those are the ones your supposed to

buy.  You tell the SSL cert provider to list both aaa.bbb.com and aaa.bbb.local as names in that cert.  Then when you apply it, encryption works both inside and from the outside.

 

The people saying to not use .local are either completely misunderstanding things - probably because they bought a cheap cert with a single name, tried to apply it to their Windows server and it blew chunks - or they are trying to game the system by deliberately ignoring the fact that hosts on the inside that attempt to go to aaa.bbb.com are going to saturate the router with useless hairpin traffic just so they can save a few bucks on a cheap SSL cert.

Member

Re: How to disable DHCP ipv6 on Cisco DPC3939B? DNS settings?

Ok, do NOT take any of this personal, but I may be end up ranting to no end out of pure frustration and CONFUSION.  You and train_wreck have been awesome btw. ; )

 

I think what I am going to do is just turn off IPv4 on the router.  UNCHECK Stateful(Use Dhcp Server) as you suggest, leave Assign DNS manually UNCHECKED with NOTHING entered in either IPv4 or IPv6 router config.  Install Essentials, let it use .local as apparently now that has always been the standard, then it was decided it wasn't best practice, but now it is or always has been..I don't care... i have NO clue anymore about the d a m n .local crap.  I just don't want problems later as I GOT ONE SHOT with this domain name.  I guess using a third level prefix is not good either as I planned.  So for now, I'll settle with the dot d a m n local.  I have read about certificate signing and lost on that also.

 

HOPEFULLY Essentials will pick up that DHCP is OFF on the router (well...the problem stills stands, Ipv4 will probably be fine, but who knows with the IPv6, because I SURE DON'T).  So I'll have to see what happens with the IPv6 of the router and what Essentials does with it and the consequences of whatever comes from this autodetection and wizard setup.

 

If none of that works like it should, then I'll through my own router into the mess and figure that system out and figure out bridging which I am not clear on either.  I'll get no-ip later AFTER I get over these hurdles of fire with my shorts doused in gasoline.

 

No wonder it's taken soemthing like 20 years for IPv6 to catch on...it's PURE HORSESCHIT.  Only the few can make this mess out... the average human being such as me sees it as garbled mess... kind of like a computer seeing a MYDOMAIN.COM name and cannot do anything with it until it's converted to binary in order to process it.  I guess I need this all flipped around and all this BINARY mess converted to ENGLISH for me to process and understand. : /

 

Offically wore out on this.  : \

 

Forum Contributor

Re: How to disable DHCP ipv6 on Cisco DPC3939B? DNS settings?

 

The reason IPv6 is taking so long to catch on is because of a catch 22.

 

As long as there's someone out there who isn't dual-stacked, then the main sites on the Internet are forced to

make both IPv6 and IPv4 available.

 

As long as the main sites on the Internet are offering both, people have no incentive to make IPv6 work on their

networks.

 

At least you spent the time to look into what IPv6 is, most don't even do that.

 

Comcast's focus on IPv6 on it's current Business Gateways has been to make it work out of the box from a "client perspective"

 

Meaning, if your business site is nothing more than a bunch of workstations in "Microsoft Workgroup-style networking", with the Business Gateway as the default router, and maybe a cheap SOHO nas or something - then it works out of the box with the person setting it up not having to know anything about -either- IPv4 or IPv6.

 

Microsoft, themselves is also having a lot of problems getting their arms around what the future of the SOHO market is going to be.

 

Server 2012 Essentials is an attempt to respond to the SOHO market - but truthfully, it's coming at that market from a very old-school perspective.  Essentials is basically a product where they took a little bit of SmallBusinessServer 2011, a little bit of Microsoft Home Server, and stripped out everything at all complicated.   But, the achillies heel here is that Essentials makes an assumption that everything on the network is going to be a Windows client machine.

 

That assumption is changing at the speed of light as Android and other mobile computing platforms make their way into the SOHO network.

 

None of us in the business have any clue what SOHO is going to look like in the next decade.

 

As a business owner, you probably spent $500 per PC for 10 machines, totalling $5,000.  Then you dropped $1000 into a server, and $200-a-pop into MS Office licenses, so that around $8,000 in basic Windows Office software and a little fileserver that can tie all of them together.

 

But, there's SOHO offices out there who are dropping $250-per-pop into Android convertible tablets, and getting 10 licenses of Office 365 - grand total cost of $2,500 for hardware, grand total cost of $150 a month for the subscription - and they have the same functionality that you do.  (to a point)   That's $4,000 for the year vs your $8000.  And, not only can each of their employees run Office 365 on their "desktop/laptop" convertible Android tablet - they can have the same desktop experience on their ipad, and their home Android tablet, and if they are walking down the street and their tablet slips out of their hands and falls down a sewer grating, they can walk into Target and buy a new tablet and 15 minutes later are right back on their desktop.  And some of these businesses are going 100% BringYourOwnDevice - which I think is long, long overdue.  I never could understand why it is that a car mechanic who makes $60K a year working on cars is expected to buy $20K of his OWN TOOLS while an office worker making $40K a year cannot buy their own laptop for $500.

 

At least, that's the promise of the Cloud.  Maybe the reality isn't quite there yet - but it's coming.

 

Microsoft and the rest of us techs simply do not know right now if the SOHO market is going to adopt that model or the niggling issues associated with that model are going to cause SOHO to stick with the old-school model.

 

It could even end up a hybrid where the SOHO mixes both cloud and old-school.

 

THAT's really why your having problems.  Essentials is far, far, far from a mature, time-tested product.  It is a bridge product that may not even exist 5 years from now.  We just don't know.  Microsoft just does not know.  If the market rejects Essentials, then it's over.  Microsoft does not continue to develop dog products.

 

There are things going on in the industry, large things, that are dictating what you are seeing when you click through the setup screens.  Comcast has to design their Business Gateways and their network to respond to what they think the majority of SOHO's are going towards.  They obviously have chosen a "cloud-ish" perspective because absolutely for sure, their Business Gateways are NOT AT ALL friendly to people wanting to setup their own servers.

 

I understand where they are coming from - there's a LOT MORE c"lient-ish" setups out there - they have to design for the majority - but that won't keep me from squawking when something is done on one of these Business Gateways (like the IPv6 PD bugs) that is unfriendly to a site wanting to run their own servers.

Member

Re: How to disable DHCP ipv6 on Cisco DPC3939B? DNS settings?

[ Edited ]

tmittelstaedt wrote:

 

 

Meaning, if your business site is nothing more than a bunch of workstations in "Microsoft Workgroup-style networking", with the Business Gateway as the default router, and maybe a cheap SOHO nas or something - then it works out of the box with the person setting it up not having to know anything about -either- IPv4 or IPv6.

 

 


Well.... that wasn't my intentions at all.  Would be NO reason to even look at Essentials if I threw all my equipment into a WORKGROUP pile.  That's just the wrong way to do this for business... fine for residential...but not my plans.  My plans are Active Directory and a DOMAIN.  I've gotta lock down the employee user workstations.  I can have them going WILLY NILLY as Eli the Computer Guy says.

 

I've got Essentials, I've got my server, I've got everything...  I can't worry about this too much or nothing will ever get done.  I persoanlly think Essentilas is just fine for my needs... I honestly HATE the Cloud... I know it benefits you mention...i am one that doens't need or fall for those so called benefits.  It's just a good way for software developers to get more money in a much better predicted way.  I am not going to get into that..  back on track here...

 

I appreciate your help, but you are on a MUCH higher level than I when it comes to this stuff... i.e. you mention DUAL-STACK like it's nothing...  I had NO IDEA what DUAL-STACK was the first time I heard it a week ago...  I searched and watched videos about it...  total chaos in my mind.  just didn't get it.  Then I asked for a SIMPLE explanation of it here, train_wreck came to the rescue.  So the thing is I understand a lot of what you are saying (after researching etc), but man, some things, I have NO CLUE...so I get LOST again.  You eat & breath this stuff.  I do not...getting a good taste of it though! ; )

 

It's pretty simple my problem, I just want to make sure Essentials is CONFIGURED correctly at first install.  I know how to do everything in Essentials using the DASHBOARD...eezy breezy...  I can fumble around SERVER MANAGER with AD, DNS, and DHCP.  But appparently, Essentials during install, then the config wizard sets up everythign automagically correct?

 

That is where I am at, pretty simply.

 

I can enter the information let it do it's thing. easy.

 

BUT.  FROM WHAT I WAS TOLD IN THE BEGINNING!  TURN OFF ALL DHCP ON THE ROUTER!

 

OK.  SIMPLE for IPv4.

 

From you PROFESSIONAL experience, what should I do next?  Do as you say and UNCHECK Stateful correct and do not mess with anything else.  I just want to make sure that my network setup is correct when Essentials does it autoconfig stuff.  Then I won;t have to mess with DHCP, scopes, DNS forwarders etc correct?  Remember, Essentials was supposed to be easier for the newbies like me.

 

Keep in mind, I just want the server set up correctly and for the future.  i.e. if IPv6 isn't supposed to be OFF or removed etc etc, then what needs to be done to keep it working as it should?  Again, I was told to turn off all DHCP on router and let the SERVER do all DHCP.  Simple as that...that's all I am asking for pretty much.  Nothing more really.

 

Thank you.  Your help is truly appreciated.

 

PS.  Just thinking about something.  If I turn off IPv4 on the router.  Then just leave the defaults for IPv6 as is on the router.  Is this all I need to do for Essentials to do it's thing?  The server would be able to assign IPs via DHCPv4 on it's own.  And does IPv6 just do things automatically from the router and no need to set anythign up on the server for DHCPv6?  i.e. no scopes, not nothing...just leave it as is?

 

I am just really stuck at this point with IPv6, DHCPv6 and the router / server settings.  I just need to know what people are doing at this step.

 

 

Member

Re: How to disable DHCP ipv6 on Cisco DPC3939B? DNS settings?

[ Edited ]

Here is something I wish I had found at the start...wish it was more specific though... i.e. what does Essentials do if it detects DHCPV4 disabled on router but not DHCPv6?

https://technet.microsoft.com/en-us/library/jj200151.aspx

 

https://technet.microsoft.com/library/jj200119.aspx

 

 

Member

Re: How to disable DHCP ipv6 on Cisco DPC3939B? DNS settings?

To tmittelstaedt:

Your replies are very helpful. It's me just having a hard time getting my head around this... but I am re-reading and re-reading what you've said and I slowly understanding the details your expressing...so thank you.
Forum Contributor

Re: How to disable DHCP ipv6 on Cisco DPC3939B? DNS settings?

"...Would be NO reason to even look at Essentials if I threw all my equipment into a WORKGROUP pile.  That's just the wrong way to do this for business... fine for residential...but not my plans.  My plans are Active Directory and a DOMAIN.  I've gotta lock down the employee user workstations.  I can have them going WILLY NILLY as Eli the Computer Guy says..."

 

There are many many different network configurations out there.  For example I have 1 customer who is running a business management information system program that does not work unless the program has administrative access to the PC.  So essentially every user is an admin on their PC.  There go all the benefits of a domain right out the window.

 

I have another one who is a 50-workstation windows network that is in workgroup-style networking and they have refused to even consider setting up a domain server.  Every system is windows 7.  Everyone is an administrator on their PC also.  Why are they like this?  Because they are cheap and any time an employee wants to install any kind of software they need, the business owner encourages them to install it and save the cost of an IT service call.

 

Microsoft, today, doesn't really understand the SOHO market anymore.  Their MO is to build these SOHO products - like Server Essentials - that they think would be Best practices for a SOHO to be doing - then throw them out into the market along with a lot of documentation saying how to use them - then cross their fingers and see if the SOHO market buys 'em.  Maybe the market will accept them, maybe not.   But, it's been many years since Microsoft actually spent time paying attention to what the SOHO really wants - because the A #1 thing the SOHO wants is "less cost" and Microsoft goes deaf when they hear that.

 

What your posting here about workgroup mode being the wrong way to do this for business is straight out of the Microsoft-written documentation on How To Setup A Windows Network For A Business.   I'm not saying that your wrong or that Microsoft is wrong.  But, I'm saying that there is a huge SOHO market that has a large number of orgs in it that are simply ignoring those instructions and not doing it that way.   And, there's other companies and other products in the SOHO market that help them to do it.

 

If you subvert the Microsoft recommendations, your business network doesn't just automatically burn down into a pile of rubbish.  Both my everyone's-and-admin customers have successful businesses that make money.  Their network problems are really no worse than anyone else's.  And I am positive that Microsoft is uncomfortably aware of this fact even though they pretend it isn't true.  That's why they hedge their bets in the SOHO market and are trying these days to wheedle along their customers rather than pushing anything.  They still to this day, release security updates for Windows XP and there's a 5 minute registry change you can make to an XP system to get 'em.  So despite their public huffing and puffing about everyone needs to go to Windows 10, privately they are still winking-and-nodding about the realities of the SOHO market.

 

But, getting back to your problem:

 

"...

From you PROFESSIONAL experience, what should I do next?  Do as you say and UNCHECK Stateful correct and do not mess with anything else.  I just want to make sure that my network setup is correct when Essentials does it autoconfig stuff.  Then I won;t have to mess with DHCP, scopes, DNS forwarders etc correct?  Remember, Essentials was supposed to be easier for the newbies like me

 Just thinking about something.  If I turn off IPv4 on the router.  Then just leave the defaults for IPv6 as is on the router.  Is this all I need to do for Essentials to do it's thing?  The server would be able to assign IPs via DHCPv4 on it's own.  And does IPv6 just do things automatically from the router and no need to set anythign up on the server for DHCPv6?  i.e. no scopes, not nothing...just leave it as is?

I am just really stuck at this point with IPv6, DHCPv6 and the router / server settings.  I just need to know what people are doing at this step..."

 

If Essentials's installer is properly written then unchecking Stateful on DHCP6 on the router is all you should need to do on the IPv6 side.  If it was me, I would also uncheck DHCP for IPv4 on the router because I would want to force the Essentials server to act as a DHCP server - because Essentials is going to be a better DHCP server than the router.  What SHOULD then happen is during the installation Essentials should ask for the router's IPv4 IP address, and it's own IPv4 address, and you would put in the 10.0.10.1 IP address of the Cisco as the default gateway (or whatever the IP address of the Cisco is).  Essentials should also ask for the DNS servers and you would put in the Comcast servers 75.75.75.75/75.75.76.76

 

Then everything should properly set itself up.  Essentials should set itself up as the IPv4 DNS and DHCP server and it should automatically configure DNS forwarders and your good to go.  And IPv6 will  Just Work.

 

If that does NOT happen when you do that, then tell us what DOES happen.

Member

Re: How to disable DHCP ipv6 on Cisco DPC3939B? DNS settings?


tmittelstaedt wrote:

 

 

But, getting back to your problem:

 

"...

From you PROFESSIONAL experience, what should I do next?  Do as you say and UNCHECK Stateful correct and do not mess with anything else.  I just want to make sure that my network setup is correct when Essentials does it autoconfig stuff.  Then I won;t have to mess with DHCP, scopes, DNS forwarders etc correct?  Remember, Essentials was supposed to be easier for the newbies like me

 Just thinking about something.  If I turn off IPv4 on the router.  Then just leave the defaults for IPv6 as is on the router.  Is this all I need to do for Essentials to do it's thing?  The server would be able to assign IPs via DHCPv4 on it's own.  And does IPv6 just do things automatically from the router and no need to set anythign up on the server for DHCPv6?  i.e. no scopes, not nothing...just leave it as is?

I am just really stuck at this point with IPv6, DHCPv6 and the router / server settings.  I just need to know what people are doing at this step..."

 

If Essentials's installer is properly written then unchecking Stateful on DHCP6 on the router is all you should need to do on the IPv6 side.  If it was me, I would also uncheck DHCP for IPv4 on the router because I would want to force the Essentials server to act as a DHCP server - because Essentials is going to be a better DHCP server than the router.  What SHOULD then happen is during the installation Essentials should ask for the router's IPv4 IP address, and it's own IPv4 address, and you would put in the 10.0.10.1 IP address of the Cisco as the default gateway (or whatever the IP address of the Cisco is).  Essentials should also ask for the DNS servers and you would put in the Comcast servers 75.75.75.75/75.75.76.76

 

Then everything should properly set itself up.  Essentials should set itself up as the IPv4 DNS and DHCP server and it should automatically configure DNS forwarders and your good to go.  And IPv6 will  Just Work.

 

If that does NOT happen when you do that, then tell us what DOES happen.


Great!  Thank you!  I will try this next and let you know if this satisfies my small dilemma here.  Thank you tmittelstaedt for hanging in there with me... very grateful for your help and KNOWLEDGE. ; )

 

 

 

PS.  IN "LAYMEN's" TERMS, can you tell me what is going on "SIMPLY" when STATEFUL is CHECKED and when it is UNCHECKED? (Stateless obiviously cannot be toggled here, stays checked as stateless no matter).

 

I get from your previous posts that STATELESS is auto configuration using SLAAC (STATELESS Auto Address Config).  So not sure what scenario this is best for?  is this when you have certain type of IPv6 devices?  some smart, some dumb or something?

 

Then I get STATEFUL has soemthing to do with m and o flags.  Not sure the benefit where setting it as STATEFUL comes into effect?  When Comcast starts handing out IPV6 static IPs, (or if I need to use DynDNS or NO-IP) does this get set to unchecked? (for later reference).

m flag off o flag on = stateless

both flags on = stateful

both flags off = no dhcp server

 

I just don't really no how those flags get set etc.

 

Thank you!

 

Discussion Stats
  • 21 replies
  • 6502 views
  • 18 kudos
  • 4 in conversation