Native IPv6 Support for Prisma Access Remote Networks
Focus
Prisma Access

Native IPv6 Support for Prisma Access Remote Networks

Table of Contents

Native IPv6 Support for Prisma Access Remote Networks

Enable native IPv6 support for Prisma Access remote networks
Where Can I Use This?What Do I Need?
  • Prisma Access (Managed by Panorama)
  • Prisma Access license
  • Prisma Access 6.2
To ensure native IPv6 compliance for public-facing IP addresses, Prisma SASE offers expanded IPv6 capabilities for underlay and overlay architectures. Public-facing IPs can operate in a native IPv6 environment, offering robust peering and tunneling options. Key capabilities of this feature include:
  • Federal compliance: Meets strict federal requirements for native IPv6 adoption across public-facing infrastructure.
  • Underlay IPv6 peering: Support for establishing native IPv6 peering connections in your infrastructure.
  • Overlay IPv6 Tunnels: Ability to enable and operate overlay IPv6 tunnels to secure your traffic.

Native IPv6 Support for Prisma Access Remote Networks (Panorama)

Enable native IPv6 support for Prisma Access remote networks in Panorama
Where Can I Use This?What Do I Need?
Prisma Access (Panorama Managed)
  • Prisma Access license
  • Prisma Access 6.2
Use this procedure to enable native IPv6 support for Prisma Access remote networks.
  1. Navigate to PanoramaCloud ServicesConfigurationService SetupSettings.
  2. Select the Settings gear.
  3. Click the Enable IPv6 checkbox to activate IPv6 capabilities across your Prisma Access deployment.
  4. Configure the IPv6 address with a subnet.
  5. Click Enable IPv6 WAN, and select OK.
  6. Navigate toPanoramaCloud ServicesConfigurationRemote NetworksOnboarding and select Add.
  7. Click the Enable IPv6 checkbox to activate IPv6 capabilities across your Prisma Access deployment.

Configure an IPSec Tunnel

  1. Use the drop-down to add a new or modify an existing IPsec tunnel.
  2. Name the IPsec tunnel.
  3. Enable IPv6.

Configure an IKE Gateway

  1. Use the drop-down to add a new or modify an existing IKE gateway.
  2. Name the IKE gateway.
  3. Enable IPv6.

Native IPv6 Support for Prisma Access Remote Networks (Strata Cloud Manager)

Enable native IPv6 support for Prisma Access remote networks in Strata Cloud Manager
Where Can I Use This?What Do I Need?
  • Prisma Access (Strata Cloud Manager)
  • Prisma Access license
  • Prisma Access 6.2.0-h2
Use this procedure to enable native IPv6 support for Prisma Access remote networks.
  1. Navigate to ConfigurationNGFW and Prisma AccessConfiguration ScopeRemote NetworksSetup.
  2. Select Add Service Connection.
  3. Name the service connection.
  4. Select a Prisma Access Location from the drop-down.
  5. Under Primary Tunnel, select Set Up.
    1. The Create IPSec Tunnel tab appears.
    2. Enter a Tunnel Name.
    3. Under IP Version, select IPv6.
    4. Under IPSec, Turn on Tunnel Monitoring, and enter a Destination IP.
    5. Under IKE GatewayBranch Device IP Address, select Dynamic.
    6. Enter the Pre-Shared Key, and confirm.
    7. Save your information
  6. To use active and passive mode, you must set up a secondary tunnel. Under Secondary Tunnel, select Set Up.
    1. The Create IPSec Tunnel tab appears.
    2. Enter a Tunnel Name.
    3. Under IP Version, select IPv6.
    4. Under IPSec, Turn on Tunnel Monitoring, and enter a Destination IP.
    5. Under IKE GatewayBranch Device IP Address, select Dynamic.
    6. Enter the Pre-Shared Key, and confirm.
    7. Save your information
  7. Under IPv6, check the Enable box.