For IPv6 addresses, you can enable some of the configuration settings globally.
To enable global settings for IPv6:
- In the Enterprise portal, click the Open New Orchestrator UI option available at the top of the Window.
- Click Launch New Orchestrator UI in the pop-up window.
- The UI opens in a new tab displaying the monitoring and configuring options.
- Click the Configure tab.
- In the Configure window, click .
You can activate or deactivate the following settings, by using the slider. By default, all the options are deactivated.
Option Description All IPv6 Traffic Allows all IPv6 traffic in the network Routing Header Type 0 Packets Allows Routing Header type 0 packets. Deactivate this option to prevent potential DoS attack that exploits IPv6 Routing Header type 0 packets. Enforce Extension Header Validation Allows to check the validity of IPv6 extension headers. Enforce Extension Header Order Check Allows to check the order of IPv6 Extension Headers. Drop & Log Packets for RFC Reserved Fields Allows to reject and log network packets if the source or destination address of the network packet is defined as an IP address reserved for future definition. ICMPv6 Destination Unreachable messages Generates messages for packets that are not reachable to IPv6 ICMP destination. ICMPv6 Time Exceeded Message Generates messages when a packet sent by IPv6 ICMP has been discarded as it was out of time. ICMPv6 Parameter Problem Message Generates messages when the device finds problem with a parameter in ICMP IPv6 header.
By default, the configurations are applied to all the Edges associated with the Profile. If required, you can modify the settings for each Edge by clicking the Override option in the page.