Unsupported Features - Stormshield SN series Configuration Manual

Hide thumbs Also See for SN series:
Table of Contents

Advertisement

Users
Authentication
Users can log on to the web authentication portal regardless of whether the remote host is in IPv4
or IPv6.
Security policy
Filtering
Filter rules may simultaneously contain IPv4 objects, IPv6 objects and IPv4 and IPv6 objects
(double stack).
Filtering: rule coherence checker
The coherence checker also applies to rules that include IPv6 objects.
Filtering: IPS
Protocol scans apply to Level 7 protocols transported over IPv6 (example: HTTP, SMTP, etc.).
tab
Quality of service processing can be applied to IPv6 traffic.
IPv6 implicit rules
Implicit rules specific to IPv6 services (router advertisements, DHCPv6) have been added (these
rules are listed in the paragraph General points > Implicit rules).
Monitoring
Alarms / Logs
Events raised by IPv6 traffic (alarms, etc.) are saved in log files. They can also be looked up in the
SN Real-Time Monitor application.
VPN
IPSec IKEv1
IPv4 and/or IPv6 traffic can be transported through IPSec tunnels set up between:
- IPv6 tunnel endpoints,
l
- IPv4 tunnel endpoints.
l
Notifications
Syslog
Logs can be sent to syslog servers in IPv6.
SNMP server
The SNMP server embeds the MIB-2 in IPv6. It can also generate traps in IPv6.

Unsupported features

In version 1.0, the following are features that will not be available for IPv6 traffic:
- IPv6 address translation (NATv6),
l
Application inspections (Antivirus, Antispam, HTTP cache, URL filtering, SMTP filtering, FTP
l
filtering and SSL filtering),
Use of the explicit proxy,
l
Page 372/448
SNS - USER CONFIGURATION MANUAL V.3
sns-en-user_configuration_manual-v3 - Copyright © Stormshield 2016
IPV6 SUPPORT

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents