For IPv6 addresses, you can activate some of the configuration settings globally.

To activate global settings for IPv6:

  1. In the Enterprise portal, click the Configure tab.
  2. In the Configure window, click Profiles > Global IPv6.
  3. You can activate or deactivate the following settings, by using the slider. By default, all the options are deactivated.
    Option Description
    All IPv6 Traffic Allows all IPv6 traffic in the network
    Routing Header Type 0 Packets Allows Routing Header type 0 packets. Deactivate this option to prevent potential DoS attack that exploits IPv6 Routing Header type 0 packets.
    Enforce Extension Header Validation Allows to check the validity of IPv6 extension headers.
    Enforce Extension Header Order Check Allows to check the order of IPv6 Extension Headers.
    Drop & Log Packets for RFC Reserved Fields Allows to reject and log network packets if the source or destination address of the network packet is defined as an IP address reserved for future definition.
    ICMPv6 Destination Unreachable messages Generates messages for packets that are not reachable to IPv6 ICMP destination.
    ICMPv6 Time Exceeded Message Generates messages when a packet sent by IPv6 ICMP has been discarded as it was out of time.
    ICMPv6 Parameter Problem Message Generates messages when the device finds problem with a parameter in ICMP IPv6 header.

By default, the configurations are applied to all the Edges associated with the Profile. If required, you can modify the settings for each Edge by clicking the Override option in the Configure > Edges page.