From the latest GrapheneOS release notes (grapheneos.org/releases#2020.):
> disable RFC 7217 support (stable link-local IPv6 privacy addresses) and stick to link-local IP addresses based on the (random) MAC addresses
The Linux implementation of privacy extensions is some nasty stuff.
Conversation
You’re unable to view this Tweet because this account owner limits who can view their Tweets. Learn more
For link-local addresses, the MAC address is available on the local network anyway and it needs to be properly randomized for privacy. Consider that solved already. Just need to figure out what to do for public addresses. Maybe conditionally disable it. Status quo is pretty bad.
You’re unable to view this Tweet because this account owner limits who can view their Tweets. Learn more
You’re unable to view this Tweet because this account owner limits who can view their Tweets. Learn more
Show replies
