Stateless Autoconfiguration IPv6


hi, in process of designing ipv6 envionment small local office network uses tmg default route internet. ipv6 need ensure if isp changes (i.e. ipv6 range buy), there isn't big ip readdressing done hosts. i've read around , seems options when obtaining new ipv6 range are:

  • don't move. isp's dream , not option. :)
  • move , readdress manually. maybe practical answer now, not scalable.
  • use stateless autoconfiguration.
  • use dhcpv6.

the last 2 best , flexible. in general, people seem saying third option smaller envionment , last big enterprises. in case, i'd use third, say, uses tmg default gateway isn't going responding router solicitation message time supports ipv4 , no plans go ipv6 (which, have say, odd). so, right in saying small network, need use dhcpv6? indeed, there ms servers respond router solicitation messages?

finally, should i'm not interested in routing here, address assignment and achieving flexible method of changing ipv6 addresss on lan.

tia

m

 

hi,

 

thank post here.

 

i not expert of tmg (forefront) suspect tmg may support ipv6 auto configuration have found technet:

 

1. technet tmg q&a, said tmg work intermediate firewall between da server (ipsec gateway) , internal network.

 

q. can install forefront tmg between directaccess server , internal network?

a. since forefront tmg not yet contain full ipv6 support, work if isatap used ipv6 traffic on internal network. in addition, end end ipsec can prevent forefront tmg working properly.

 

2. tmg support isatap ipv6 traffic (for directaccess scenarios) following pre-defined system rules:

 

 

37

allow ipv6 infrastructure traffic local-host ipv6 networks rule

various

icmpv6 listener done

icmpv6 listener query

icmpv6 listener report

icmpv6 listener report v2

icmpv6 multicast router advertisement

icmpv6 multicast router solicitation

icmpv6 multicast router termination

icmpv6 neighbor advertisement

icmpv6 neighbor solicitation

icmpv6 router advertisement

icmpv6 router solicitation

local host

internal

this rule allows ipv6 infrastructure traffic local-host ipv6 networks.

38

allow ipv6 infrastructure traffic ipv6 networks local-host rule

various

icmpv6 listener done

icmpv6 listener query

icmpv6 listener report

icmpv6 listener report v2

icmpv6 multicast router advertisement

icmpv6 multicast router solicitation

icmpv6 multicast router termination

icmpv6 neighbor advertisement

icmpv6 neighbor solicitation

icmpv6 router advertisement

icmpv6 router solicitation

link-local multicast name resolution

internal

loacl host

this rule allows ipv6 infrastructure traffic ipv6 networks local-host rule.

 

i suspect tmg may forward neighbor solicitation message since can forward ipv6 traffic in directaccess scenarios. not sure it. can have test check whether work or not.

 

if have questions or concerns, please not hesitate let me know

 

 



Windows Server  >  Platform Networking



Comments

Popular posts from this blog

some help on Event 540

WMI Repository 4GB limit - Win 2003 Ent Question

Event ID 1302 (error 1307) DFS replication service encountered an error while writing to the debug log file