IPv6 Firewall Rules

IPV6 provides enhanced identification and location information for computers on networks routing traffic across the Internet. These hosts require firewall packet protection unique to IPv6 traffic, as IPv6 addresses are composed of eight groups of four hexadecimal digits separated by colons. IPv6 hosts can configure themselves automatically when connected to an IPv6 network using the ND (neighbor discovery) protocol via ICMPv6 router discovery messages. When first connected to a network, a host sends a link-local router solicitation multicast request for its configuration parameters; routers respond to such a request with a router advertisement packet that contains Internet layer configuration parameters.

Firewall rules can use one of the three following actions based on a rule criteria:
  • Allow an IPv6 formatted connection.
  • Allow a connection only if it is secured through the use of IPv6 security
  • Block a connection and exchange of IPv6 formatted packets

To view a controller or service platform's existing IPv6 firewall rules:

  1. Select the Statistics menu from the Web UI.
  2. Expand the System node from the navigation pane (on the left-hand side of the screen).
    The System node expands to display the RF Domains created within the managed network.
  3. Expand the RF Domain node.
  4. Select a Wireless Controller.
  5. Expand the Firewall menu from the left-hand side of the UI.
  6. Select IPv6 Firewall Rules.
    The Statistics > Controller > Firewall > IPv6 Firewall Rule screen displays in the right-hand pane.
  7. Select Refresh to update the screen‘s statistics counters to their latest values.