{"id":58696,"date":"2026-08-30T09:02:09","date_gmt":"2026-08-29T23:02:09","guid":{"rendered":"https:\/\/www.cloudproinc.com.au\/index.php\/2026\/08\/30\/azure-firewall-ipv6-readiness-checklist-for-security-leaders\/"},"modified":"2026-08-30T09:03:24","modified_gmt":"2026-08-29T23:03:24","slug":"azure-firewall-ipv6-readiness-checklist-for-security-leaders","status":"publish","type":"post","link":"https:\/\/cloudproinc.com.au\/index.php\/2026\/08\/30\/azure-firewall-ipv6-readiness-checklist-for-security-leaders\/","title":{"rendered":"Azure Firewall IPv6 Readiness Checklist for Security Leaders"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">In this blog post Azure Firewall IPv6 Readiness Checklist for Security Leaders we will explain what Azure Firewall\u2019s new IPv6 capability means, where the current gaps are, and how to prepare without creating an unmonitored route into your environment.<\/p>\n\n\n\n<!--more-->\n\n\n\n<p class=\"wp-block-paragraph\">Many organisations assume IPv6 is simply a larger version of the addressing system they already use. The danger is that applications can begin communicating over IPv6 while firewall rules, monitoring tools and operational processes remain focused on IPv4. That can create security blind spots, failed partner connections and lengthy troubleshooting incidents.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">IPv6 is the newer system used to identify devices and services on a network. Azure supports dual-stack networking, which allows IPv4 and IPv6 to operate at the same time. Azure Firewall, the managed service that inspects and controls traffic entering, leaving and moving between Azure networks, can now be deployed in dual-stack mode.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">At the time of writing, Azure Firewall IPv6 support remains in preview. It is useful for testing and selected workloads, but it does not yet provide complete feature parity with IPv4. That makes readiness planning more important than simply switching it on.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Why IPv6 readiness is a business issue<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">IPv6 adoption may initially look like a network engineering project. In practice, it affects service availability, security monitoring, compliance evidence and the reliability of customer-facing systems.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">For example, a service may receive both an IPv4 address and an IPv6 address. When its domain name publishes an IPv6 record, some users and systems will automatically prefer the IPv6 path. If that path has not been tested, customers may see intermittent failures even though the familiar IPv4 service remains healthy.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The objective is therefore not to migrate everything immediately. It is to ensure IPv6 cannot become an unmanaged alternative route around your existing controls.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">The practical Azure Firewall IPv6 readiness checklist<\/h2>\n\n\n\n<h3 class=\"wp-block-heading\">1. Confirm that your architecture is currently supported<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Start by identifying how Azure Firewall is deployed. Current preview support is designed for Azure Firewall within a virtual network. Classic Azure Firewall and firewalls deployed in an Azure Virtual WAN virtual hub are not supported for IPv6.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">IPv6-only deployment is also not available. You must use dual stack, keeping IPv4 operational while adding IPv6.<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Record the Azure Firewall SKU, region and deployment model.<\/li>\n<li>Identify whether the firewall sits in a traditional hub-and-spoke network or a Virtual WAN hub.<\/li>\n<li>Check every production dependency against Microsoft\u2019s current preview limitations.<\/li>\n<li>Do not assume a supported Azure service automatically supports your required IPv6 security controls.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">This first check can prevent a costly design exercise based on a feature combination that is not yet available.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">2. Map the traffic before changing the addresses<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Create a simple map of how important applications communicate. Include internet access, connections between Azure networks, on-premises systems, software providers, partner networks, remote users and private Azure services.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">For each flow, document the source, destination, port, protocol, business owner and existing security rule. Pay particular attention to applications that rely on domain names because a new IPv6 DNS record can change the path they use without an obvious application change.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">If your environment includes Azure AI services, review the network and identity controls in our security best practices for Azure AI services. AI workloads often connect to several data sources and external services, making undocumented network paths particularly risky.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">3. Build an IPv6 addressing plan<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">IPv6 provides an enormous number of addresses, but that does not remove the need for planning. Azure IPv6 subnet ranges must be a specific size known as \/64, so the address structure should be designed consistently across subscriptions, regions and environments.<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Allocate separate ranges for production, testing and development.<\/li>\n<li>Avoid overlapping ranges with offices, data centres, partners and other cloud environments.<\/li>\n<li>Record ownership in your network management system.<\/li>\n<li>Plan for future regions and business acquisitions.<\/li>\n<li>Define whether workloads require private IPv6, public IPv6 or both.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">A structured plan reduces routing mistakes and makes firewall logs easier to investigate during an incident.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">4. Review every route and security group<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">IPv4 and IPv6 use separate routes. An IPv4 route sending internet traffic through Azure Firewall does not automatically prove that IPv6 traffic follows the same path.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Review user-defined routes, which are custom instructions telling Azure where network traffic should go. Confirm that IPv6 traffic from each participating network is directed through the firewall rather than travelling directly to the internet.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Network Security Groups, which act as local traffic filters around Azure subnets and network interfaces, also need explicit IPv6 rules. Check both allowed and denied traffic rather than copying broad IPv4 rules and hoping they behave the same way.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">5. Understand the current protection gaps<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">The preview supports IPv6 network rules, which allow or deny traffic according to IP address, port and protocol. It also supports Azure Firewall acting as a DNS proxy, meaning it can handle and monitor name lookup requests for connected systems.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">However, several important Azure Firewall functions are not yet available for IPv6 traffic. These currently include application rules, inbound destination address translation rules, threat intelligence filtering, intrusion detection and prevention, explicit proxy support and rules based on reusable IP Groups.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">In plain English, enabling dual stack does not mean IPv6 traffic receives every advanced check that your IPv4 traffic receives. This is the most important issue for security leaders to understand.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">If an application needs public inbound access, consider whether Azure Front Door or Application Gateway should remain the controlled entry point. For partner-facing services, our Azure Front Door mutual TLS playbook for B2B APIs explains how to verify connecting systems before accepting requests.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">6. Check outbound identities and partner allow-lists<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">For most outbound IPv6 internet connections, Azure Firewall performs source network address translation, or SNAT. This replaces a workload\u2019s private source address with the firewall\u2019s public IPv6 address.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">That address may need to be added to supplier and partner allow-lists. Otherwise, legitimate traffic can fail when a system starts using IPv6 instead of its previously approved IPv4 address.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Private IPv6 addresses within the unique local address range are handled differently and are not translated in the same way. Test the source address that each destination actually sees rather than relying solely on the design diagram.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">7. Prove that monitoring can see IPv6<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Send Azure Firewall diagnostic logs to Azure Monitor or your central security monitoring platform. Confirm that your dashboards, searches and alerts correctly recognise IPv6 addresses, which are longer and formatted differently from IPv4 addresses.<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Test allowed and denied IPv6 connections.<\/li>\n<li>Alert on unexpected direct internet access.<\/li>\n<li>Check that incident reports capture the full IPv6 address.<\/li>\n<li>Confirm your managed security provider can investigate IPv6 events.<\/li>\n<li>Update support procedures so IPv6 is not dismissed as an unusual log entry.<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">This supports good security governance and the monitoring intent behind the Essential Eight, the Australian government\u2019s cybersecurity framework that many organisations use to reduce common attack paths. IPv6 does not provide Essential Eight compliance by itself, but unmanaged IPv6 can weaken the controls you already rely on.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">8. Use a test environment and define the exit plan<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">During the current preview, an Azure Firewall upgraded to dual-stack mode cannot be changed back to IPv4-only mode. Do not make the production firewall your first test.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Build a representative test environment or begin with a low-risk spoke network. Test DNS, routing, firewall rules, partner access, monitoring, performance and failure scenarios before enabling production workloads.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Your rollback plan may need to disable IPv6 at the application, DNS or routing layer rather than reversing the firewall itself. Add these recovery steps to the wider Azure platform resilience checklist.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">A useful discovery command<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Your Azure team can use the Azure command-line interface to capture basic firewall and network information before planning any change. These commands only read the current configuration.<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>az network firewall show \\\n --resource-group &amp;lt;resource-group&amp;gt; \\\n --name &amp;lt;firewall-name&amp;gt; \\\n --query &quot;{sku:sku, virtualHub:virtualHub.id, ipConfigurations:ipConfigurations}&quot; \\\n --output json\n\naz network vnet show \\\n --resource-group &amp;lt;resource-group&amp;gt; \\\n --name &amp;lt;virtual-network-name&amp;gt; \\\n --query &quot;addressSpace.addressPrefixes&quot; \\\n --output table<\/code><\/pre>\n\n\n\n<p class=\"wp-block-paragraph\">The output should be reviewed alongside firewall policies, route tables, DNS records and application dependencies. A configuration export alone will not reveal why a connection exists or what happens if it fails.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">A representative business scenario<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Consider a 200-person Australian manufacturer with Azure-hosted business applications and connections to logistics partners. Its firewall rules are mature, but every partner allow-list, monitoring query and troubleshooting guide assumes IPv4.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Enabling IPv6 across production immediately could create failed data transfers or traffic that lacks the expected advanced inspection. A safer approach is to inventory the partner flows, add a dual-stack test network, verify the visible outbound address and confirm monitoring before moving one application at a time.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The outcome is not simply \u201cIPv6 enabled.\u201d It is fewer outages, no surprise security bypasses and clear evidence that network controls still operate as intended.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">What technology leaders should do next<\/h2>\n\n\n\n<ol class=\"wp-block-list\">\n<li>Identify every Azure Firewall deployment and its architecture.<\/li>\n<li>Find workloads already using or advertising IPv6.<\/li>\n<li>Compare required security functions with the current preview limitations.<\/li>\n<li>Create an addressing, routing and monitoring standard.<\/li>\n<li>Run a controlled pilot before approving production use.<\/li>\n<\/ol>\n\n\n\n<p class=\"wp-block-paragraph\">CloudProInc combines more than 20 years of enterprise IT experience with practical Azure security work. As a Microsoft Partner and Wiz Security Integrator, our Melbourne-based team helps organisations assess cloud paths, firewall policies and security exposure without turning the exercise into a large, open-ended project.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">If you are not sure whether IPv6 could bypass your current Azure controls, we are happy to review the architecture and identify the gaps before they become production problems \u2014 no strings attached.<\/p>\n\n\n","protected":false},"excerpt":{"rendered":"<p>Azure Firewall now supports IPv6 in preview. Use this practical checklist to identify security gaps, control migration risk and prepare your Azure environment for dual-stack networking.<\/p>\n","protected":false},"author":1,"featured_media":58698,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_yoast_wpseo_opengraph-title":"Azure Firewall IPv6 Readiness Checklist for Security Leaders","_yoast_wpseo_opengraph-description":"Use this IPv6 readiness checklist to assess dual-stack architecture, routes, security rules and protection gaps before enabling production traffic safely.","_yoast_wpseo_twitter-title":"Azure Firewall IPv6 Readiness Checklist for Security Leaders","_yoast_wpseo_twitter-description":"Use this IPv6 readiness checklist to assess dual-stack architecture, routes, security rules and protection gaps before enabling production traffic safely.","_et_pb_use_builder":"","_et_pb_old_content":"","_et_gb_content_width":"","_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_feature_clip_id":0,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_post_was_ever_published":false},"categories":[16,19,13,127],"tags":[],"class_list":["post-58696","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-microsoft-azure","category-azure-security","category-blog","category-cloud-security"],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v27.3 (Yoast SEO v28.3) - https:\/\/yoast.com\/product\/yoast-seo-premium-wordpress\/ -->\n<title>Azure Firewall IPv6 Readiness Checklist for Security Leaders<\/title>\n<meta name=\"description\" content=\"Use this IPv6 readiness checklist to assess dual-stack architecture, routes, security rules and protection gaps before enabling production traffic safely.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.cloudproinc.com.au\/index.php\/2026\/08\/30\/azure-firewall-ipv6-readiness-checklist-for-security-leaders\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Azure Firewall IPv6 Readiness Checklist for Security Leaders\" \/>\n<meta property=\"og:description\" content=\"Use this IPv6 readiness checklist to assess dual-stack architecture, routes, security rules and protection gaps before enabling production traffic safely.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.cloudproinc.com.au\/index.php\/2026\/08\/30\/azure-firewall-ipv6-readiness-checklist-for-security-leaders\/\" \/>\n<meta property=\"og:site_name\" content=\"CPI Consulting\" \/>\n<meta property=\"article:published_time\" content=\"2026-08-29T23:02:09+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2026-08-29T23:03:24+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/cloudproinc.com.au\/wp-content\/uploads\/2026\/08\/azure-firewall-ipv6-readiness-checklist-for-security-leaders.png\" \/>\n\t<meta property=\"og:image:width\" content=\"1536\" \/>\n\t<meta property=\"og:image:height\" content=\"1024\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"CPI Staff\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:title\" content=\"Azure Firewall IPv6 Readiness Checklist for Security Leaders\" \/>\n<meta name=\"twitter:description\" content=\"Use this IPv6 readiness checklist to assess dual-stack architecture, routes, security rules and protection gaps before enabling production traffic safely.\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"CPI Staff\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"8 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.cloudproinc.com.au\\\/index.php\\\/2026\\\/08\\\/30\\\/azure-firewall-ipv6-readiness-checklist-for-security-leaders\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.cloudproinc.com.au\\\/index.php\\\/2026\\\/08\\\/30\\\/azure-firewall-ipv6-readiness-checklist-for-security-leaders\\\/\"},\"author\":{\"name\":\"CPI Staff\",\"@id\":\"https:\\\/\\\/www.cloudproinc.com.au\\\/#\\\/schema\\\/person\\\/192eeeb0ce91062126ce3822ae88fe6e\"},\"headline\":\"Azure Firewall IPv6 Readiness Checklist for Security Leaders\",\"datePublished\":\"2026-08-29T23:02:09+00:00\",\"dateModified\":\"2026-08-29T23:03:24+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.cloudproinc.com.au\\\/index.php\\\/2026\\\/08\\\/30\\\/azure-firewall-ipv6-readiness-checklist-for-security-leaders\\\/\"},\"wordCount\":1547,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/www.cloudproinc.com.au\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.cloudproinc.com.au\\\/index.php\\\/2026\\\/08\\\/30\\\/azure-firewall-ipv6-readiness-checklist-for-security-leaders\\\/#primaryimage\"},\"thumbnailUrl\":\"\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/azure-firewall-ipv6-readiness-checklist-for-security-leaders.png\",\"articleSection\":[\"Azure\",\"Azure Security\",\"Blog\",\"Cloud Security\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/www.cloudproinc.com.au\\\/index.php\\\/2026\\\/08\\\/30\\\/azure-firewall-ipv6-readiness-checklist-for-security-leaders\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.cloudproinc.com.au\\\/index.php\\\/2026\\\/08\\\/30\\\/azure-firewall-ipv6-readiness-checklist-for-security-leaders\\\/\",\"url\":\"https:\\\/\\\/www.cloudproinc.com.au\\\/index.php\\\/2026\\\/08\\\/30\\\/azure-firewall-ipv6-readiness-checklist-for-security-leaders\\\/\",\"name\":\"Azure Firewall IPv6 Readiness Checklist for Security Leaders\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.cloudproinc.com.au\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.cloudproinc.com.au\\\/index.php\\\/2026\\\/08\\\/30\\\/azure-firewall-ipv6-readiness-checklist-for-security-leaders\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.cloudproinc.com.au\\\/index.php\\\/2026\\\/08\\\/30\\\/azure-firewall-ipv6-readiness-checklist-for-security-leaders\\\/#primaryimage\"},\"thumbnailUrl\":\"\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/azure-firewall-ipv6-readiness-checklist-for-security-leaders.png\",\"datePublished\":\"2026-08-29T23:02:09+00:00\",\"dateModified\":\"2026-08-29T23:03:24+00:00\",\"description\":\"Use this IPv6 readiness checklist to assess dual-stack architecture, routes, security rules and protection gaps before enabling production traffic safely.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.cloudproinc.com.au\\\/index.php\\\/2026\\\/08\\\/30\\\/azure-firewall-ipv6-readiness-checklist-for-security-leaders\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.cloudproinc.com.au\\\/index.php\\\/2026\\\/08\\\/30\\\/azure-firewall-ipv6-readiness-checklist-for-security-leaders\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.cloudproinc.com.au\\\/index.php\\\/2026\\\/08\\\/30\\\/azure-firewall-ipv6-readiness-checklist-for-security-leaders\\\/#primaryimage\",\"url\":\"\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/azure-firewall-ipv6-readiness-checklist-for-security-leaders.png\",\"contentUrl\":\"\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/azure-firewall-ipv6-readiness-checklist-for-security-leaders.png\",\"width\":1536,\"height\":1024},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.cloudproinc.com.au\\\/index.php\\\/2026\\\/08\\\/30\\\/azure-firewall-ipv6-readiness-checklist-for-security-leaders\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.cloudproinc.com.au\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Azure Firewall IPv6 Readiness Checklist for Security Leaders\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.cloudproinc.com.au\\\/#website\",\"url\":\"https:\\\/\\\/www.cloudproinc.com.au\\\/\",\"name\":\"Cloud Pro Inc - CPI Consulting Pty Ltd\",\"description\":\"Cloud, AI &amp; Cybersecurity Consulting | Melbourne\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.cloudproinc.com.au\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.cloudproinc.com.au\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.cloudproinc.com.au\\\/#organization\",\"name\":\"Cloud Pro Inc - Cloud Pro Inc - CPI Consulting Pty Ltd\",\"url\":\"https:\\\/\\\/www.cloudproinc.com.au\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.cloudproinc.com.au\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"\\\/wp-content\\\/uploads\\\/2022\\\/01\\\/favfinalfile.png\",\"contentUrl\":\"\\\/wp-content\\\/uploads\\\/2022\\\/01\\\/favfinalfile.png\",\"width\":500,\"height\":500,\"caption\":\"Cloud Pro Inc - Cloud Pro Inc - CPI Consulting Pty Ltd\"},\"image\":{\"@id\":\"https:\\\/\\\/www.cloudproinc.com.au\\\/#\\\/schema\\\/logo\\\/image\\\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.cloudproinc.com.au\\\/#\\\/schema\\\/person\\\/192eeeb0ce91062126ce3822ae88fe6e\",\"name\":\"CPI Staff\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/2d96eeb53b791d92c8c50dd667e3beec92c93253bb6ff21c02cfa8ca73665c70?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/2d96eeb53b791d92c8c50dd667e3beec92c93253bb6ff21c02cfa8ca73665c70?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/2d96eeb53b791d92c8c50dd667e3beec92c93253bb6ff21c02cfa8ca73665c70?s=96&d=mm&r=g\",\"caption\":\"CPI Staff\"},\"sameAs\":[\"http:\\\/\\\/www.cloudproinc.com.au\"],\"url\":\"https:\\\/\\\/cloudproinc.com.au\\\/index.php\\\/author\\\/cpiadmin\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"Azure Firewall IPv6 Readiness Checklist for Security Leaders","description":"Use this IPv6 readiness checklist to assess dual-stack architecture, routes, security rules and protection gaps before enabling production traffic safely.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.cloudproinc.com.au\/index.php\/2026\/08\/30\/azure-firewall-ipv6-readiness-checklist-for-security-leaders\/","og_locale":"en_US","og_type":"article","og_title":"Azure Firewall IPv6 Readiness Checklist for Security Leaders","og_description":"Use this IPv6 readiness checklist to assess dual-stack architecture, routes, security rules and protection gaps before enabling production traffic safely.","og_url":"https:\/\/www.cloudproinc.com.au\/index.php\/2026\/08\/30\/azure-firewall-ipv6-readiness-checklist-for-security-leaders\/","og_site_name":"CPI Consulting","article_published_time":"2026-08-29T23:02:09+00:00","article_modified_time":"2026-08-29T23:03:24+00:00","og_image":[{"width":1536,"height":1024,"url":"https:\/\/cloudproinc.com.au\/wp-content\/uploads\/2026\/08\/azure-firewall-ipv6-readiness-checklist-for-security-leaders.png","type":"image\/png"}],"author":"CPI Staff","twitter_card":"summary_large_image","twitter_title":"Azure Firewall IPv6 Readiness Checklist for Security Leaders","twitter_description":"Use this IPv6 readiness checklist to assess dual-stack architecture, routes, security rules and protection gaps before enabling production traffic safely.","twitter_misc":{"Written by":"CPI Staff","Est. reading time":"8 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.cloudproinc.com.au\/index.php\/2026\/08\/30\/azure-firewall-ipv6-readiness-checklist-for-security-leaders\/#article","isPartOf":{"@id":"https:\/\/www.cloudproinc.com.au\/index.php\/2026\/08\/30\/azure-firewall-ipv6-readiness-checklist-for-security-leaders\/"},"author":{"name":"CPI Staff","@id":"https:\/\/www.cloudproinc.com.au\/#\/schema\/person\/192eeeb0ce91062126ce3822ae88fe6e"},"headline":"Azure Firewall IPv6 Readiness Checklist for Security Leaders","datePublished":"2026-08-29T23:02:09+00:00","dateModified":"2026-08-29T23:03:24+00:00","mainEntityOfPage":{"@id":"https:\/\/www.cloudproinc.com.au\/index.php\/2026\/08\/30\/azure-firewall-ipv6-readiness-checklist-for-security-leaders\/"},"wordCount":1547,"commentCount":0,"publisher":{"@id":"https:\/\/www.cloudproinc.com.au\/#organization"},"image":{"@id":"https:\/\/www.cloudproinc.com.au\/index.php\/2026\/08\/30\/azure-firewall-ipv6-readiness-checklist-for-security-leaders\/#primaryimage"},"thumbnailUrl":"\/wp-content\/uploads\/2026\/08\/azure-firewall-ipv6-readiness-checklist-for-security-leaders.png","articleSection":["Azure","Azure Security","Blog","Cloud Security"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/www.cloudproinc.com.au\/index.php\/2026\/08\/30\/azure-firewall-ipv6-readiness-checklist-for-security-leaders\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/www.cloudproinc.com.au\/index.php\/2026\/08\/30\/azure-firewall-ipv6-readiness-checklist-for-security-leaders\/","url":"https:\/\/www.cloudproinc.com.au\/index.php\/2026\/08\/30\/azure-firewall-ipv6-readiness-checklist-for-security-leaders\/","name":"Azure Firewall IPv6 Readiness Checklist for Security Leaders","isPartOf":{"@id":"https:\/\/www.cloudproinc.com.au\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.cloudproinc.com.au\/index.php\/2026\/08\/30\/azure-firewall-ipv6-readiness-checklist-for-security-leaders\/#primaryimage"},"image":{"@id":"https:\/\/www.cloudproinc.com.au\/index.php\/2026\/08\/30\/azure-firewall-ipv6-readiness-checklist-for-security-leaders\/#primaryimage"},"thumbnailUrl":"\/wp-content\/uploads\/2026\/08\/azure-firewall-ipv6-readiness-checklist-for-security-leaders.png","datePublished":"2026-08-29T23:02:09+00:00","dateModified":"2026-08-29T23:03:24+00:00","description":"Use this IPv6 readiness checklist to assess dual-stack architecture, routes, security rules and protection gaps before enabling production traffic safely.","breadcrumb":{"@id":"https:\/\/www.cloudproinc.com.au\/index.php\/2026\/08\/30\/azure-firewall-ipv6-readiness-checklist-for-security-leaders\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.cloudproinc.com.au\/index.php\/2026\/08\/30\/azure-firewall-ipv6-readiness-checklist-for-security-leaders\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.cloudproinc.com.au\/index.php\/2026\/08\/30\/azure-firewall-ipv6-readiness-checklist-for-security-leaders\/#primaryimage","url":"\/wp-content\/uploads\/2026\/08\/azure-firewall-ipv6-readiness-checklist-for-security-leaders.png","contentUrl":"\/wp-content\/uploads\/2026\/08\/azure-firewall-ipv6-readiness-checklist-for-security-leaders.png","width":1536,"height":1024},{"@type":"BreadcrumbList","@id":"https:\/\/www.cloudproinc.com.au\/index.php\/2026\/08\/30\/azure-firewall-ipv6-readiness-checklist-for-security-leaders\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.cloudproinc.com.au\/"},{"@type":"ListItem","position":2,"name":"Azure Firewall IPv6 Readiness Checklist for Security Leaders"}]},{"@type":"WebSite","@id":"https:\/\/www.cloudproinc.com.au\/#website","url":"https:\/\/www.cloudproinc.com.au\/","name":"Cloud Pro Inc - CPI Consulting Pty Ltd","description":"Cloud, AI &amp; Cybersecurity Consulting | Melbourne","publisher":{"@id":"https:\/\/www.cloudproinc.com.au\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.cloudproinc.com.au\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.cloudproinc.com.au\/#organization","name":"Cloud Pro Inc - Cloud Pro Inc - CPI Consulting Pty Ltd","url":"https:\/\/www.cloudproinc.com.au\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.cloudproinc.com.au\/#\/schema\/logo\/image\/","url":"\/wp-content\/uploads\/2022\/01\/favfinalfile.png","contentUrl":"\/wp-content\/uploads\/2022\/01\/favfinalfile.png","width":500,"height":500,"caption":"Cloud Pro Inc - Cloud Pro Inc - CPI Consulting Pty Ltd"},"image":{"@id":"https:\/\/www.cloudproinc.com.au\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/www.cloudproinc.com.au\/#\/schema\/person\/192eeeb0ce91062126ce3822ae88fe6e","name":"CPI Staff","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/2d96eeb53b791d92c8c50dd667e3beec92c93253bb6ff21c02cfa8ca73665c70?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/2d96eeb53b791d92c8c50dd667e3beec92c93253bb6ff21c02cfa8ca73665c70?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/2d96eeb53b791d92c8c50dd667e3beec92c93253bb6ff21c02cfa8ca73665c70?s=96&d=mm&r=g","caption":"CPI Staff"},"sameAs":["http:\/\/www.cloudproinc.com.au"],"url":"https:\/\/cloudproinc.com.au\/index.php\/author\/cpiadmin\/"}]}},"jetpack-related-posts":[{"id":58590,"url":"https:\/\/cloudproinc.com.au\/index.php\/2026\/08\/22\/designing-azure-network-resilience-for-site-recovery-failover\/","url_meta":{"origin":58696,"position":0},"title":"Designing Azure Network Resilience for Site Recovery Failover","author":"CPI Staff","date":"August 22, 2026","format":false,"excerpt":"Azure Site Recovery can restart your systems, but poor routing can leave them unreachable. Learn how route summarisation and practical failover testing reduce recovery time and risk.","rel":"","context":"In &quot;Azure&quot;","block_context":{"text":"Azure","link":"https:\/\/cloudproinc.com.au\/index.php\/category\/microsoft-azure\/"},"img":{"alt_text":"","src":"\/wp-content\/uploads\/2026\/08\/designing-azure-network-resilience-for-site-recovery-failover.png","width":350,"height":200,"srcset":"\/wp-content\/uploads\/2026\/08\/designing-azure-network-resilience-for-site-recovery-failover.png 1x, \/wp-content\/uploads\/2026\/08\/designing-azure-network-resilience-for-site-recovery-failover.png 1.5x, \/wp-content\/uploads\/2026\/08\/designing-azure-network-resilience-for-site-recovery-failover.png 2x, \/wp-content\/uploads\/2026\/08\/designing-azure-network-resilience-for-site-recovery-failover.png 3x, \/wp-content\/uploads\/2026\/08\/designing-azure-network-resilience-for-site-recovery-failover.png 4x"},"classes":[]},{"id":58378,"url":"https:\/\/cloudproinc.com.au\/index.php\/2026\/08\/13\/azure-firewall-premium-performance-gains-for-secure-ai-and-saas\/","url_meta":{"origin":58696,"position":1},"title":"Azure Firewall Premium Performance Gains for Secure AI and SaaS","author":"CPI Staff","date":"August 13, 2026","format":false,"excerpt":"Azure Firewall Premium\u2019s latest performance gains help organisations inspect encrypted AI and SaaS traffic while reducing bottlenecks, security exceptions and user frustration.","rel":"","context":"In &quot;AI Agents&quot;","block_context":{"text":"AI Agents","link":"https:\/\/cloudproinc.com.au\/index.php\/category\/ai-agents\/"},"img":{"alt_text":"","src":"\/wp-content\/uploads\/2026\/08\/azure-firewall-premium-performance-gains-for-secure-ai-and-saas.png","width":350,"height":200,"srcset":"\/wp-content\/uploads\/2026\/08\/azure-firewall-premium-performance-gains-for-secure-ai-and-saas.png 1x, \/wp-content\/uploads\/2026\/08\/azure-firewall-premium-performance-gains-for-secure-ai-and-saas.png 1.5x, \/wp-content\/uploads\/2026\/08\/azure-firewall-premium-performance-gains-for-secure-ai-and-saas.png 2x, \/wp-content\/uploads\/2026\/08\/azure-firewall-premium-performance-gains-for-secure-ai-and-saas.png 3x, \/wp-content\/uploads\/2026\/08\/azure-firewall-premium-performance-gains-for-secure-ai-and-saas.png 4x"},"classes":[]},{"id":560,"url":"https:\/\/cloudproinc.com.au\/index.php\/2024\/08\/20\/hardening-azure-wiz-outpost\/","url_meta":{"origin":58696,"position":2},"title":"Hardening Azure Wiz Outpost","author":"CPI Staff","date":"August 20, 2024","format":false,"excerpt":"In this Wiz outpost blog post, we will explain the process of hardening Azure Wiz outpost and follow best practices. Table of contentsHardening Azure Wiz OutpostUse a Dedicated SubscriptionEnable Microsoft Defender for CloudEnable auto-provisioning of Microsoft Monitoring AgentCreate Activity Log AlertsRelated Articles Hardening Azure Wiz Outpost Azure Wiz outposts allow\u2026","rel":"","context":"In &quot;Azure&quot;","block_context":{"text":"Azure","link":"https:\/\/cloudproinc.com.au\/index.php\/category\/microsoft-azure\/"},"img":{"alt_text":"","src":"\/wp-content\/uploads\/2024\/08\/Hardening-Azure-Wiz-outpost.webp","width":350,"height":200,"srcset":"\/wp-content\/uploads\/2024\/08\/Hardening-Azure-Wiz-outpost.webp 1x, \/wp-content\/uploads\/2024\/08\/Hardening-Azure-Wiz-outpost.webp 1.5x, \/wp-content\/uploads\/2024\/08\/Hardening-Azure-Wiz-outpost.webp 2x"},"classes":[]},{"id":56773,"url":"https:\/\/cloudproinc.com.au\/index.php\/2025\/11\/05\/why-use-an-azure-landing-zone\/","url_meta":{"origin":58696,"position":3},"title":"Why Use an Azure Landing Zone","author":"CPI Staff","date":"November 5, 2025","format":false,"excerpt":"Learn what an Azure Landing Zone is, why it matters, and how to build one that balances speed, security, and cost. Practical steps and examples for technical leaders and engineers.","rel":"","context":"In &quot;Azure&quot;","block_context":{"text":"Azure","link":"https:\/\/cloudproinc.com.au\/index.php\/category\/microsoft-azure\/"},"img":{"alt_text":"","src":"\/wp-content\/uploads\/2025\/11\/why-use-an-azure-landing-zone-for-secure-scalable-cloud-growth.png","width":350,"height":200,"srcset":"\/wp-content\/uploads\/2025\/11\/why-use-an-azure-landing-zone-for-secure-scalable-cloud-growth.png 1x, \/wp-content\/uploads\/2025\/11\/why-use-an-azure-landing-zone-for-secure-scalable-cloud-growth.png 1.5x, \/wp-content\/uploads\/2025\/11\/why-use-an-azure-landing-zone-for-secure-scalable-cloud-growth.png 2x, \/wp-content\/uploads\/2025\/11\/why-use-an-azure-landing-zone-for-secure-scalable-cloud-growth.png 3x, \/wp-content\/uploads\/2025\/11\/why-use-an-azure-landing-zone-for-secure-scalable-cloud-growth.png 4x"},"classes":[]},{"id":56780,"url":"https:\/\/cloudproinc.com.au\/index.php\/2025\/11\/10\/security-best-practices-for-azure-ai-services\/","url_meta":{"origin":58696,"position":4},"title":"Security Best Practices for Azure AI Services","author":"CPI Staff","date":"November 10, 2025","format":false,"excerpt":"Practical, step-by-step guidance to secure Azure AI services end to end\u2014identity, networks, data, prompts, and monitoring\u2014so your teams can innovate confidently without exposing your organisation.","rel":"","context":"In &quot;Azure AI Services&quot;","block_context":{"text":"Azure AI Services","link":"https:\/\/cloudproinc.com.au\/index.php\/category\/azure-ai-services\/"},"img":{"alt_text":"","src":"\/wp-content\/uploads\/2025\/11\/security-best-practices-for-azure-ai-services-in-practice.png","width":350,"height":200,"srcset":"\/wp-content\/uploads\/2025\/11\/security-best-practices-for-azure-ai-services-in-practice.png 1x, \/wp-content\/uploads\/2025\/11\/security-best-practices-for-azure-ai-services-in-practice.png 1.5x, \/wp-content\/uploads\/2025\/11\/security-best-practices-for-azure-ai-services-in-practice.png 2x, \/wp-content\/uploads\/2025\/11\/security-best-practices-for-azure-ai-services-in-practice.png 3x, \/wp-content\/uploads\/2025\/11\/security-best-practices-for-azure-ai-services-in-practice.png 4x"},"classes":[]},{"id":58491,"url":"https:\/\/cloudproinc.com.au\/index.php\/2026\/08\/17\/a-practical-azure-front-door-mutual-tls-playbook-for-b2b-apis\/","url_meta":{"origin":58696,"position":5},"title":"A Practical Azure Front Door Mutual TLS Playbook for B2B APIs","author":"CPI Staff","date":"August 17, 2026","format":false,"excerpt":"Learn how Azure Front Door mutual TLS can block unknown systems, strengthen partner API security, and reduce the operational risk of certificate-based B2B integrations.","rel":"","context":"In &quot;Azure&quot;","block_context":{"text":"Azure","link":"https:\/\/cloudproinc.com.au\/index.php\/category\/microsoft-azure\/"},"img":{"alt_text":"","src":"\/wp-content\/uploads\/2026\/08\/a-practical-azure-front-door-mutual-tls-playbook-for-b2b-apis.png","width":350,"height":200,"srcset":"\/wp-content\/uploads\/2026\/08\/a-practical-azure-front-door-mutual-tls-playbook-for-b2b-apis.png 1x, \/wp-content\/uploads\/2026\/08\/a-practical-azure-front-door-mutual-tls-playbook-for-b2b-apis.png 1.5x, \/wp-content\/uploads\/2026\/08\/a-practical-azure-front-door-mutual-tls-playbook-for-b2b-apis.png 2x, \/wp-content\/uploads\/2026\/08\/a-practical-azure-front-door-mutual-tls-playbook-for-b2b-apis.png 3x, \/wp-content\/uploads\/2026\/08\/a-practical-azure-front-door-mutual-tls-playbook-for-b2b-apis.png 4x"},"classes":[]}],"jetpack_sharing_enabled":true,"jetpack_featured_media_url":"\/wp-content\/uploads\/2026\/08\/azure-firewall-ipv6-readiness-checklist-for-security-leaders.png","_links":{"self":[{"href":"https:\/\/cloudproinc.com.au\/index.php\/wp-json\/wp\/v2\/posts\/58696","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/cloudproinc.com.au\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/cloudproinc.com.au\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/cloudproinc.com.au\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/cloudproinc.com.au\/index.php\/wp-json\/wp\/v2\/comments?post=58696"}],"version-history":[{"count":1,"href":"https:\/\/cloudproinc.com.au\/index.php\/wp-json\/wp\/v2\/posts\/58696\/revisions"}],"predecessor-version":[{"id":58697,"href":"https:\/\/cloudproinc.com.au\/index.php\/wp-json\/wp\/v2\/posts\/58696\/revisions\/58697"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/cloudproinc.com.au\/index.php\/wp-json\/wp\/v2\/media\/58698"}],"wp:attachment":[{"href":"https:\/\/cloudproinc.com.au\/index.php\/wp-json\/wp\/v2\/media?parent=58696"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/cloudproinc.com.au\/index.php\/wp-json\/wp\/v2\/categories?post=58696"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/cloudproinc.com.au\/index.php\/wp-json\/wp\/v2\/tags?post=58696"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}