[190487] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: NAT firewall for IPv6?

daemon@ATHENA.MIT.EDU (A.L.M.Buxey@lboro.ac.uk)
Tue Jul 5 11:51:48 2016

X-Original-To: nanog@nanog.org
Date: Tue, 5 Jul 2016 15:40:08 +0000
From: A.L.M.Buxey@lboro.ac.uk
To: Edgar Carver <dredgarcarver@gmail.com>
In-Reply-To: <CAMJ2qG0_Z4yArNt6jc10c+OhRSV-2Gv0k0thNdJD9WSuFaA-Ww@mail.gmail.com>
Cc: nanog@nanog.org
Errors-To: nanog-bounces@nanog.org

Hi,


I would go through the password recovery options on the PaloAlto.

as a next gen firewall you need to ensure you are getting all the latets rulesets
and detection code through - check your subscription with them


once you've sorted out access you can look at the policies and ensure that
the IPv6 AV filtering rules match that for IPv4 - fairly easy with their interface.
(check your codebase version for feature abilities....once again, you may need to
deal with PA to ensure your codebase is current. these things get OLD quickly


as for NAT for IOV6. nope.   and turning it off ISNT the answer (yes, its an answer...just
the wrong one! ;-) )


alan

home help back first fref pref prev next nref lref last post