Method used to configure ISATAP tunnels on the USG6000 series

On the USG6000 series, configure the ISATAP tunnel as follows:

NGFW_A is a boundary device on the IPv6 and IPv4 networks. The IPv4 address of interface GigabitEthernet 1/0/1 connecting NGFW_A to the IPv4 network is 1.1.1.1/24. The IPv4 address of the host PC is 1.1.1.2/24. An ISATAP tunnel is established between NGFW_A and the PC.

1. Configure the tunnel encapsulation type, source address, and ISATAP address prefix of the tunnel interface of NGFW_A.
system-view
[NGFW] sysname NGFW_A
[NGFW_A] ipv6
[NGFW_A] interface tunnel 1
[NGFW_A-Tunnel1] tunnel-protocol ipv6-ipv4 isatap
[NGFW_A-Tunnel1] ipv6 enable
[NGFW_A-Tunnel1] source 1.1.1.1
[NGFW_A-Tunnel1] ipv6 address 3001:: 64 eui-64
[NGFW_A-Tunnel1] undo ipv6 nd ra halt

2. Assume that the host PC adopts the Microsoft Windows XP Professional system. The IPv4 address configured for the host is 1.1.1.2/24. Install the IPv6 protocol on the PC, so that the PC can obtain ISATAP address prefix 3001::/64 from NGFW_A.

Scroll to top