<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Existing IPv4 IPSec tunnel – how to add IPv6]]></title><description><![CDATA[<p dir="auto">We have a Cisco ASA 5512 in our NOC and have a /48 from our provider. Remote offices have IPSec tunnels to the NOC with 192.168.x.x addressing. The remote offices do not have native IPv6 from their ISPs so I'd like to tunnel the IPv6 traffic back through the NOC.</p>
<p dir="auto">I've gotten as far as adding a second IPv6 phase 2 to my existing tunnel. LAN addressing is set up just fine. How do I tell pfSense to route the traffic through the tunnel though?</p>
]]></description><link>https://forum.netgate.com/topic/88556/existing-ipv4-ipsec-tunnel-how-to-add-ipv6</link><generator>RSS for Node</generator><lastBuildDate>Sat, 18 Jul 2026 23:44:15 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/88556.rss" rel="self" type="application/rss+xml"/><pubDate>Tue, 01 Sep 2015 17:43:47 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Existing IPv4 IPSec tunnel – how to add IPv6 on Thu, 03 Sep 2015 00:26:46 GMT]]></title><description><![CDATA[<p dir="auto">Yes, I already worked around the multiple P2 issue with a config edit and both come up successfully.</p>
<p dir="auto">Tomorrow I'm going to try setting the network on the ASA side of the IPv6 P2 to ::/0 instead of the LAN address…</p>
]]></description><link>https://forum.netgate.com/post/568354</link><guid isPermaLink="true">https://forum.netgate.com/post/568354</guid><dc:creator><![CDATA[miken32]]></dc:creator><pubDate>Thu, 03 Sep 2015 00:26:46 GMT</pubDate></item><item><title><![CDATA[Reply to Existing IPv4 IPSec tunnel – how to add IPv6 on Wed, 02 Sep 2015 20:25:07 GMT]]></title><description><![CDATA[<p dir="auto">IIRC this probably won't work.</p>
<p dir="auto">First, it requires IKEv2 to be able to mix IPv4 and IPv6 on a single tunnel, but even then it may not function as expected. There are some issues with Cisco ASA and IKEv2 such as https://redmine.pfsense.org/issues/4704 that may also hold it back.</p>
]]></description><link>https://forum.netgate.com/post/568330</link><guid isPermaLink="true">https://forum.netgate.com/post/568330</guid><dc:creator><![CDATA[jimp]]></dc:creator><pubDate>Wed, 02 Sep 2015 20:25:07 GMT</pubDate></item></channel></rss>