2023-03-07 10:57:42 +01:00
|
|
|
#!rsc by RouterOS
|
|
|
|
# RouterOS script: ipv6-update
|
2025-01-02 00:04:06 +01:00
|
|
|
# Copyright (c) 2013-2025 Christian Hesse <mail@eworm.de>
|
2025-01-24 20:46:11 +01:00
|
|
|
# https://rsc.eworm.de/COPYING.md
|
2023-03-07 10:57:42 +01:00
|
|
|
#
|
2025-02-07 17:39:48 +01:00
|
|
|
# requires RouterOS, version=7.15
|
2023-11-15 21:31:18 +01:00
|
|
|
#
|
2023-03-07 10:57:42 +01:00
|
|
|
# update firewall and dns settings on IPv6 prefix change
|
2025-01-24 20:46:11 +01:00
|
|
|
# https://rsc.eworm.de/doc/ipv6-update.md
|
2023-03-07 10:57:42 +01:00
|
|
|
|
2024-12-06 10:31:52 +01:00
|
|
|
:local ExitOK false;
|
2025-05-06 09:44:23 +02:00
|
|
|
:onerror Err {
|
2025-05-06 14:08:37 +02:00
|
|
|
:global GlobalConfigReady; :global GlobalFunctionsReady;
|
|
|
|
:retry { :if ($GlobalConfigReady != true || $GlobalFunctionsReady != true) \
|
|
|
|
do={ :error ("Global config and/or functions not ready."); }; } delay=500ms max=50;
|
2024-03-06 15:28:55 +01:00
|
|
|
:local ScriptName [ :jobname ];
|
2023-03-07 10:57:42 +01:00
|
|
|
|
2024-03-08 12:45:38 +01:00
|
|
|
:global LogPrint;
|
2024-03-04 13:48:01 +01:00
|
|
|
:global ParseKeyValueStore;
|
|
|
|
:global ScriptLock;
|
2023-06-13 09:03:10 +02:00
|
|
|
|
2024-10-22 21:38:38 +02:00
|
|
|
:local NaAddress $"na-address";
|
2025-03-03 09:10:54 +01:00
|
|
|
:local NaValid $"na-valid";
|
2024-03-06 15:28:55 +01:00
|
|
|
:local PdPrefix $"pd-prefix";
|
2025-03-03 09:10:54 +01:00
|
|
|
:local PdValid $"pd-valid";
|
2024-03-06 15:28:55 +01:00
|
|
|
|
2024-03-05 16:12:36 +01:00
|
|
|
:if ([ $ScriptLock $ScriptName ] = false) do={
|
2024-12-06 10:31:52 +01:00
|
|
|
:set ExitOK true;
|
2024-03-06 15:28:55 +01:00
|
|
|
:error false;
|
2024-03-05 16:12:36 +01:00
|
|
|
}
|
2023-03-07 10:57:42 +01:00
|
|
|
|
2024-10-22 21:38:38 +02:00
|
|
|
:if ([ :typeof $NaAddress ] = "str") do={
|
|
|
|
$LogPrint info $ScriptName ("An address (" . $NaAddress . ") was acquired, not a prefix. Ignoring.");
|
2024-12-06 10:31:52 +01:00
|
|
|
:set ExitOK true;
|
2024-10-22 21:38:38 +02:00
|
|
|
:error false;
|
|
|
|
}
|
|
|
|
|
2025-03-03 09:12:43 +01:00
|
|
|
:if ([ :typeof $PdPrefix ] = "nothing" || [ :typeof $PdValid ] = "nothing") do={
|
2024-03-08 12:45:38 +01:00
|
|
|
$LogPrint error $ScriptName ("This script is supposed to run from ipv6 dhcp-client.");
|
2024-12-06 10:31:52 +01:00
|
|
|
:set ExitOK true;
|
2024-03-08 12:45:38 +01:00
|
|
|
:error false;
|
2024-03-04 13:48:01 +01:00
|
|
|
}
|
2023-03-07 10:57:42 +01:00
|
|
|
|
2025-03-03 09:10:54 +01:00
|
|
|
:if ($PdValid != 1) do={
|
|
|
|
$LogPrint info $ScriptName ("The prefix " . $PdPrefix . " is no longer valid. Ignoring.");
|
|
|
|
:set ExitOK true;
|
|
|
|
:error false;
|
|
|
|
}
|
|
|
|
|
2024-03-04 13:48:01 +01:00
|
|
|
:local Pool [ /ipv6/pool/get [ find where prefix=$PdPrefix ] name ];
|
|
|
|
:if ([ :len [ /ipv6/firewall/address-list/find where comment=("ipv6-pool-" . $Pool) ] ] = 0) do={
|
2024-10-22 22:35:14 +02:00
|
|
|
/ipv6/firewall/address-list/add list=("ipv6-pool-" . $Pool) address=:: comment=("ipv6-pool-" . $Pool) dynamic=yes;
|
|
|
|
$LogPrint warning $ScriptName ("Added dynamic ipv6 address list entry for ipv6-pool-" . $Pool);
|
2024-03-04 13:48:01 +01:00
|
|
|
}
|
|
|
|
:local AddrList [ /ipv6/firewall/address-list/find where comment=("ipv6-pool-" . $Pool) ];
|
|
|
|
:local OldPrefix [ /ipv6/firewall/address-list/get ($AddrList->0) address ];
|
2023-03-07 10:57:42 +01:00
|
|
|
|
2024-03-04 13:48:01 +01:00
|
|
|
:if ($OldPrefix != $PdPrefix) do={
|
2024-03-08 12:45:38 +01:00
|
|
|
$LogPrint info $ScriptName ("Updating IPv6 address list with new IPv6 prefix " . $PdPrefix);
|
2024-03-04 13:48:01 +01:00
|
|
|
/ipv6/firewall/address-list/set address=$PdPrefix $AddrList;
|
2023-03-07 10:57:42 +01:00
|
|
|
|
2024-03-04 13:48:01 +01:00
|
|
|
# give the interfaces a moment to receive their addresses
|
|
|
|
:delay 2s;
|
2023-03-07 10:57:42 +01:00
|
|
|
|
2024-03-04 13:48:01 +01:00
|
|
|
:foreach ListEntry in=[ /ipv6/firewall/address-list/find where comment~("^ipv6-pool-" . $Pool . ",") ] do={
|
|
|
|
:local ListEntryVal [ /ipv6/firewall/address-list/get $ListEntry ];
|
|
|
|
:local Comment [ $ParseKeyValueStore ($ListEntryVal->"comment") ];
|
2023-03-07 10:57:42 +01:00
|
|
|
|
2024-03-04 13:48:01 +01:00
|
|
|
:local Prefix [ /ipv6/address/find where from-pool=$Pool interface=($Comment->"interface") global ];
|
|
|
|
:if ([ :len $Prefix ] = 1) do={
|
|
|
|
:set Prefix [ /ipv6/address/get $Prefix address ];
|
2023-03-07 10:57:42 +01:00
|
|
|
|
2024-03-04 13:48:01 +01:00
|
|
|
:if ([ :typeof [ :find ($ListEntryVal->"address") "/128" ] ] = "num" ) do={
|
|
|
|
:set Prefix ([ :toip6 [ :pick $Prefix 0 [ :find $Prefix "/64" ] ] ] & ffff:ffff:ffff:ffff::);
|
|
|
|
:local Address ($ListEntryVal->"address");
|
|
|
|
:local Address ($Prefix | ([ :toip6 [ :pick $Address 0 [ :find $Address "/128" ] ] ] & ::ffff:ffff:ffff:ffff));
|
|
|
|
|
2024-03-08 12:45:38 +01:00
|
|
|
$LogPrint info $ScriptName ("Updating IPv6 address list with new IPv6 host address " . $Address . \
|
|
|
|
" from interface " . ($Comment->"interface"));
|
2024-03-04 13:48:01 +01:00
|
|
|
/ipv6/firewall/address-list/set address=$Address $ListEntry;
|
|
|
|
} else={
|
2024-03-08 12:45:38 +01:00
|
|
|
$LogPrint info $ScriptName ("Updating IPv6 address list with new IPv6 prefix " . $Prefix . \
|
|
|
|
" from interface " . ($Comment->"interface"));
|
2024-03-04 13:48:01 +01:00
|
|
|
/ipv6/firewall/address-list/set address=$Prefix $ListEntry;
|
|
|
|
}
|
2023-03-07 10:57:42 +01:00
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2024-03-04 13:48:01 +01:00
|
|
|
:foreach Record in=[ /ip/dns/static/find where comment~("^ipv6-pool-" . $Pool . ",") ] do={
|
|
|
|
:local RecordVal [ /ip/dns/static/get $Record ];
|
|
|
|
:local Comment [ $ParseKeyValueStore ($RecordVal->"comment") ];
|
2023-03-07 10:57:42 +01:00
|
|
|
|
2024-03-04 13:48:01 +01:00
|
|
|
:local Prefix [ /ipv6/address/find where from-pool=$Pool interface=($Comment->"interface") global ];
|
|
|
|
:if ([ :len $Prefix ] = 1) do={
|
|
|
|
:set Prefix [ /ipv6/address/get $Prefix address ];
|
|
|
|
:set Prefix ([ :toip6 [ :pick $Prefix 0 [ :find $Prefix "/64" ] ] ] & ffff:ffff:ffff:ffff::);
|
|
|
|
:local Address ($Prefix | ([ :toip6 ($RecordVal->"address") ] & ::ffff:ffff:ffff:ffff));
|
2023-03-07 10:57:42 +01:00
|
|
|
|
2024-03-08 12:45:38 +01:00
|
|
|
$LogPrint info $ScriptName ("Updating DNS record for " . ($RecordVal->"name") . \
|
|
|
|
($RecordVal->"regexp") . " to " . $Address);
|
2024-03-04 13:48:01 +01:00
|
|
|
/ip/dns/static/set address=$Address $Record;
|
|
|
|
}
|
2023-03-07 10:57:42 +01:00
|
|
|
}
|
|
|
|
}
|
2025-05-06 09:44:23 +02:00
|
|
|
} do={
|
|
|
|
:global ExitError; $ExitError $ExitOK [ :jobname ] $Err;
|
2024-12-06 10:31:52 +01:00
|
|
|
}
|