Unable to reach internet using IPv6 network for LAN

Description

This article covers a use case scenario should a customer receive a block of IPv6 global IPs and decides to subnet it for their LAN network.

 

 

Cause

Service Provider filters traffic on edge routers using prefix-list, since BGP consumes an important amount of CPU, so they filter advertisement routes from client, and packets that don't match the prefix-list are dropped. This means if we do a packet capture on the SonicWall we will be able to see upstream traffic coming from LAN subnet but there is no downstream traffic.

See packet capture done below for more details :

 

 

 Image

Resolution

By default, an IPv6 NAT policy is not automatically created when enabling IPv6. Create an IPv6 NAT policy using the following article: LAN to WAN IPv6 traffic need manually add NAT policy.

 

Related Articles

  • SonicOS 8.1.0 FAQ
    Read More
  • SonicWall GEN8 TZs and GEN8 NSas Settings Migration
    Read More
  • Getting started with SonicWall firewalls
    Read More
not finding your answers?