Hello all. This is a quick and dirty post after spending most the day with a Sophos UTM 9 attempting to get IPv6 working. I am beginning to think my approach may be misinformed. My goal is to have two different IPv6 networks, one private that never changes and routes through my internal environment. I would use these internal addresses for printers, NAS, Servers, etc... FD00:192:168:99::/64 for example.
The other subnet would be publicly routable and provided by the ISP or Tunnel Broker.. The idea here is that if I had multiple ISPs at any point and wanted to flip between them without using BGP, when it readdresses all my systems the internal subnet will still route throughout my infrastructure reliably.
I attempted to configure the publicly routable connection using stateless autoconfig and using DHCPv6 "M" to address my internal subnets. Unfortunately, I can only ever get one or the other to work. I can't for the life of me get a client machine to receive both IPs from each subnet simultaneously. Although the RFC reads you should be able to run each addressing mechanism (stateless and DHCPv6) at the same time, I'm not sure if that was meant for a single subnet for client compatibility or if it is actually supposed to be able to service two different address schemes on the same network.
Anyone else been down this road that can shed some light? Have I run into a limitation of the Sophos UTM or is this just not how it is done?
Regards,
Adam Tyler
This thread was automatically locked due to age.