F3726, F3211, F3174, R5135, R3816-HP Firewalls and UTM Devices VPN Configuration Guide-6PW100
79
Ste
p
Command
Remarks
4. Configure an IPv6
address for the
tunnel interface.
• Configure an IPv6 global unicast
address or a site-local address:
{ ipv6 address { ipv6-address
prefix-length |
ipv6-address/prefix-length }
{ ipv6 address
ipv6-address/prefix-length eui-64
• Configure an IPv6 link-local address:
{ ipv6 address auto link-local
{ ipv6 address ipv6-address
link-local
The IPv6 link-local address
configuration is optional.
By default:
• No IPv6 global unicast address or
site-local address is configured
for the tunnel interface.
• A link-local address is
automatically generated when an
IPv6 global unicast address or
site-local address is configured.
5. Specify the 6to4
tunnel mode.
tunnel-protocol ipv6-ipv4 6to4
The default tunnel mode is GRE over
IPv4 mode. The same tunnel mode
should be configured at both ends of
the tunnel. Otherwise, packet
delivery fails.
6. Configure a source
address or interface
for the tunnel.
source { ip-address | interface-type
interface-number }
By default, no source address or
interface is configured for the tunnel.
7. Return to system
view.
quit N/A
8. Enable dropping of
IPv6 packets using
IPv4-compatible IPv6
addresses.
tunnel discard ipv4-compatible-packet
Optional.
The default setting is disabled.
141B6to4 tunnel configuration example
376BNetwork requirements
As shown in 715HFigure 66, configure a 6to4 tunnel between 6to4 firewalls Firewall A and Firewall B to make
Host A and Host B reachable to each other.
Figure 66 Network diagram