Use VM-Series to create an NPTv6 policy to translate the inbound
traffic destined to IPv6 forwarding rule to the web app in a trust VPC.
This section shows a use case to test the inbound internet
traffic destined to IPv6 forwarding rule to the web app on internal-vm in the
trust VPC on the Google Cloud Platform (GCP).
| Where Can I Use This? | What Do I Need? |
- Google Cloud Platform (GCP)
|
- VM-Series License (PAYG or BYOL)
- VM-Series plugin
- Panorama
- Panorama plugin for GCP
|
For this workflow, deploy and configure the VM-Series firewall in
GCP. Create an NPTv6 policy to translate traffic destined to the IPv6 forwarding
rule to the web app on internal-vm, and test the inbound internet traffic
through the VM-Series firewall.
VM-Series firewalls add security to
the NPTv6 traffic on GCP.
ArchitectureVM-Series firewall resource deployed in GCP
The architecture shows the VM-Series deployed with 3 network
interfaces, each belonging to a dual-stack subnet, and belongs to an unmanaged
instance group that serves as the backend service of an external pass-through load
balancer.
The load balancer is configured with IPv4 and IPv6 frontend
addresses to distribute internet inbound traffic to the untrust interface. The test
workloads are deployed to test north-south traffic. The external-vpc contains
an Ubuntu VM to test internet inbound traffic through the VM-Series to the
internal-vm in the trust network.
Prerequisites: