We use PaloAlto GlobalProtect and have it running dual stack both as a gateway and for internal access – it works well.
Only limitation is that it doesn’t seem to pass ICMPv6 traceroute traffic over the tunnel, we haven’t logged this as a bug as it is not really a big issue.
From: ipv6-wg <ipv6-wg-bounces@ripe.net>
On Behalf Of christian bretterhofer
Sent: 10 March 2019 21:09
To: ipv6-wg@ripe.net
Subject: [ipv6-wg] SSL VPN Clients
WARNING: This e-mail originated from outside the Razorblue Group corporate network
Sorry for a little be off topic query.
I am checking which VPN solutions are IPv6 compatible outside and inside the tunnel and can so transport with any IPv6/IPv4 connection IPv6/IPv4 internal
to then tunnel
Maybe somebody made such tests already and can point me to it.
What i found so far:
Citrix SSL VPN ( seems to have only partial support)
https://www.citrix.com/blogs/2010/07/13/are-citrix-products-ipv6-ready/ so IPv6 / IPv6 not yet supported
https://support.citrix.com/article/CTX211780 NetScaler Gateway VPN users are not able
to resolve IPv4 DNS when their ISP has IPv6 enabled.
OpenVPN
https://community.openvpn.net/openvpn/wiki/IPv6 No complete example found yet.
Wireguard (LINUX only)
seems to support it but missing other stuff like hostchecker
Cisco SSL VPN
Microsoft Direct access (win7/win10) and new Always on VPN (Win10 only)
--
---
best regards
Christian Bretterhofer