Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

SSL Remote Access VPN and IPv6

Hello,

I have my UTM 9.404 box setup for the remote access SSL VPN.  This works fine with IPv6 turned off.  However I would like to enable IPv6 (NOT FOR THE VPN) so that I can begin to leverage the expanded IP space for devices in my home.  However as soon as I get it all up and running the VPN breaks - I can connect but nothing routes.  If I switch IPv6 back off then the VPN starts working like it should.  I found this article (and tried the bottom 2 things) but it's still not working.  The first suggestion I am unable to do since both the IPv4 and ipV6 address on my WAN port are from DHCP.  

Just to make it clear I DO NOT care about using IPv6 on the SSL VPN but I don't see any way to disable it there.  Any advice would be appreciated.  I would rather not disable IPv6 globally just to get the VPN to work.

Thanks,

Dan



This thread was automatically locked due to age.
Parents
  • This just started happening to me, in this case on iOS using the OpenVPN client. The first time the vpn client connects to the vpn server (on a new IP) it works fine, the connection details show ipv4 ip and port..all is good. The second time around though, it somehow connects via ipv6, not even sure how....but once it connects via ipv6, I can't access any resources behind the VPN....any help?

     

    BTW, although it is apparent that my IPv4 addresses somehow have an IPv6 counterparts, I do not have ipv6 enabled anywhere in my UTM

  • "I do not have ipv6 enabled anywhere in my UTM" - What about in the iOS device?  Still, I don't think the UTM would allow you to connect with IPv6 unless you'd activated it - is it possile that you're talking to something else?

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • Thanks Bob,

     

    I can confirm I was indeed connecting to my server through trying an invalid username/password combination, confirming the client IP, and confirming through the UTM itself. The issue seems to have been fixed by enabling "seamless tunnel", please see my previous post for a slightly more detailed explanation.

     

    However, it looks like the OP (who had abandoned his post), is still having issues, which seem to be unrelated to mine, perhaps you can assist him? Thanks Bob and happy holidays!

Reply
  • Thanks Bob,

     

    I can confirm I was indeed connecting to my server through trying an invalid username/password combination, confirming the client IP, and confirming through the UTM itself. The issue seems to have been fixed by enabling "seamless tunnel", please see my previous post for a slightly more detailed explanation.

     

    However, it looks like the OP (who had abandoned his post), is still having issues, which seem to be unrelated to mine, perhaps you can assist him? Thanks Bob and happy holidays!

Children
No Data