IPv6 Support by Feature
Review which PAN-OSĀ® features support IPv6 traffic.
Use the following table to review PAN-OSĀ® features (listed
by category) that support IPv6 traffic.
PAN-OS Feature | PAN-OS 8.1* | PAN-OS 9.1 | PAN-OS 10.1 | PAN-OS 10.2 | PAN-OS 11.0 |
---|---|---|---|---|---|
Security | |||||
WildFireĀ® Appliance | ā | ā | ā | ā | ā |
App-ID⢠and Firewalling in Layer 2 and Layer
3 | ā | ā | ā | ā | ā |
User-ID⢠| ā | ā | ā | ā | ā |
Content-ID⢠| ā | ā | ā | ā | ā |
Block IPv6 in IPv4 Tunneling (via App-ID) | ā | ā | ā | ā | ā |
Zone Protection | ā | ā | ā | ā | ā |
Packet-Based Attack Protection | ā | ā | ā | ā | ā |
Reconnaissance Protection | ā | ā | ā | ā | ā |
URL Filtering | ā | ā | ā | ā | ā |
SSL Decryption | ā | ā | ā | ā | ā |
SSH Decryption | ā | ā | ā | ā | ā |
DoS Rulebase | ā | ā | ā | ā | ā |
IPv6 Access to PAN-DB | ā | ā | ā | ā | ā |
DNS Sinkhole | ā | ā | ā | ā | ā |
External Dynamic List (EDL) | ā | ā | ā | ā | ā |
Management
& Panorama⢠| |||||
SSH Management (dedicated
MGMT port) | ā | ā | ā | ā | ā |
Web Interface Management (dedicated
MGMT port) | ā | ā | ā | ā | ā |
Interface Management (ping,
telnet, ssh, http, https - all ports) | ā | ā | ā | ā | ā |
Device to Panorama SSL TCP Connection | ā | ā | ā | ā | ā |
Panorama HA Connection Between Peers | ā | ā | ā | ā | ā |
DNS | ā | ā | ā | ā | ā |
Dynamic DNS Support for Firewall Interfaces
(DHCP-based interfaces) | ā | ā | ā | ā | ā |
RADIUS | ā | ā | ā | ā | ā |
LDAP | ā | ā | ā | ā | ā |
SYSLOG | ā | ā | ā | ā | ā |
SNMP | ā | ā | ā | ā | ā |
NTP | ā | ā | ā | ā | ā |
Device DNS (device only) | ā | ā | ā | ā | ā |
DNS Proxy | ā | ā | ā | ā | ā |
Reporting and Visibility in to IPv6 | ā | ā | ā | ā | ā |
IPv6 Address Objects | ā | ā | ā | ā | ā |
IPv6 FQDN Address Objects | ā | ā | ā | ā | ā |
Networking | |||||
IPv6 Static Routes | ā | ā | ā | ā | ā |
PBF | ā | ā | ā | ā | ā |
PBF Next-Hop Monitor (v6 endpoint) | ā | ā | ā | ā | ā |
OSPFv3 | ā | ā | ā | ā | ā |
MP-BGP | ā | ā | ā | ā | ā |
GRE Tunneling Support | ā | ā | ā | ā | ā |
ECMP | ā | ā | ā | ā | ā |
Dual Stack Support for L3 Interfaces | ā | ā | ā | ā | ā |
QoS Policy | ā | ā | ā | ā | ā |
QoS Marking | ā | ā | ā | ā | ā |
DSCP (session based) | ā | ā | ā | ā | ā |
Neighbor Discovery and Duplicate Address
Detection | ā | ā | ā | ā | ā |
Tunnel Content Inspection | ā | ā | ā | ā | ā |
Virtual Wires | ā | ā | ā | ā | ā |
NPTv6 (stateless prefix translation) | ā | ā | ā | ā | ā |
NAT64 (IP-IPv6 protocol translation) | ā | ā | ā | ā | ā |
LLDP (Link Layer Discovery Protocol) | ā | ā | ā | ā | ā |
Bidirectional Forwarding Detection (BFD) | ā | ā | ā | ā | ā |
VPN | |||||
GlobalProtect⢠| ā | ā | ā | ā | ā |
IKE/IPSec | ā | ā | ā | ā | ā |
IKEv2 | ā | ā | ā | ā | ā |
IPv6 over IPv4 IPSec Tunnel | ā | ā | ā | ā | ā |
Large Scale VPN (LSVPN) | ā | ā | ā | ā | ā |
Host
Dynamic Address Configuration | |||||
DHCPv6 Relay | ā | ā | ā | ā | ā |
DHCPv6 Client with Prefix Delegation ( Dataplane
Interface only ) | ā | ā | ā | ā | ā |
SLAAC (Router Advertisements) | ā | ā | ā | ā | ā |
SLAAC (Router Preference) | ā | ā | ā | ā | ā |
SLAAC (RDNSS) | ā | ā | ā | ā | ā |
Device | |||||
High Availability (HA)āActive/Active | ā | ā | ā | ā | ā |
HAāActive/Passive | ā | ā | ā | ā | ā |
HAāIPv6 transport for HA1 & HA2 | ā | ā | ā | ā | ā |
HA Path Monitoring (IPv6 Endpoint) | ā | ā | ā | ā | ā |
HA Clustering | ā | ā | ā | ā | ā |
User-ID | |||||
Map IPv6 Address to Users | ā | ā | ā | ā | ā |
Captive Portal for IPv6 | ā | ā | ā | ā | ā |
Connection to User-ID Agents over IPv6 | ā | ā | ā | ā | ā |
User-ID XML API for IPv6 | ā | ā | ā | ā | ā |
Terminal Server Agent IPv6 | ā | ā | ā | ā | ā |
* PAN-OS 8.1 is supported only on PA-200, PA-500, and PA-5000
Series firewalls and the M-100 appliance and only until each reaches its hardware end-of-life (EoL) date.
Most Popular
Recommended For You
Recommended Videos
Recommended videos not found.