Feature #8173

dhcp6c - RAW Options

Added by Martin Wasley almost 3 years ago. Updated over 1 year ago.

Target version:
Start date:
Due date:
% Done:


Estimated time:


The lack of available options in dhcp6c prevents pfSense from being used with certain ISPs.

For example, Orange France require three options to be sent that are not currently supported in dhcp6c.

I have now issued a PR upstream at hrs-allbsd/wide-dhcpv6 that allows the use of the Keyword RAW as an option. Here is an example of a part of the config file when using the RAW options.

  1. User class "+FSVDSL_livebox.Internet.softathome.Livebox3";
    send raw-option 15 00:2b:46:53:56:44:53:4c:5f:6c:69:76:65:62:6f:78:2e:49:6e:74:65:72:6e:65:74:2e:73:6f:66:74:61:74:68:6f:6d:65:2e:6c:69:76:65:62:6f:78:33;
  2. Vendor class "sagem"
    send raw-option 16 00:00:04:0e:00:05:73:61:67:65:6d;
  3. Authentication
    send raw-option 11 00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:65:78:61:6d:70:6c:65;
  4. IA-PD
    send ia-pd 0;
  5. Requests : authentication, domain-name, domain-name-servers;
    send raw-option 6 00:0b:00:11:00:17:00:18;

Several users have been using the modified version of dhcp6c for several months with no issues, but obliviously it would be better if the version of dhcp6c that ships with pfSense supported this 'out of the box'.


#1 Updated by Martin Wasley almost 3 years ago

Sorry, that's not looking at what I have written... the keyword is raw-option in the config, not RAW.

#2 Updated by Jim Pingle almost 3 years ago

  • Description updated (diff)

#3 Updated by frederic lubrano over 2 years ago


view patch

his is the WIDE-DHCPv6 client maintained by the OPNsense project.

Improvements include the following:

- Reload the client configuration on SIGHUP
- Removed all unused binaries except dhcp6c
- Raw option send and receive support


#4 Updated by frederic lubrano over 2 years ago

The improvement request is essential for IPv6 authentication for Orange (France, UK, Spain, ...),
this method of authentication via DHCPv6 this generalizes to European ISPs. For IPv4, the problem is solved by upgrading
For your information, this is not a problem for Opensense /
We have no problem, on solutions PaloAlto, Fortinet, ....

To summarize Pfsense allows authentication with IPv4 but not with IPv6, it's really a pity ☹ ☹ ☹

Thanks for the helps.

best regards,


#5 Updated by Jim Pingle over 1 year ago

  • Category set to Interfaces

Also available in: Atom PDF