VPN between IPv6 WANs?

I have a CCR1009 as a VPN gateway, both for distant ROS devices and for personal PCs. We do support sstp, ovpn, pptp and (rarely) ipsec. The WAN address was IPv4.

Now I try to use IPv6 as another (dual-stack) address on WAN port. ISP provided us with some IPv6 subnet, we’ve set it up, but sadly I can not use IPv6 as remote VPN point in any VPN connection on remote ROS devices (haven’t tried IPSec so far). Tesed sstp, ovpn, pptp - all says address is wrong.

I suspect Mirotik still won’t support VPN between IPv6 addresses, it that true? Any approach I can use to employ IPv6 now? The only thing I can imagine I can set up AAAA record in DNS pointing to router IPv6 address and use this name as VPN gatway name, but may this help at all?

I’m not sure if this answers your question but I do transport mode ipsec between 2 IPv6 MikroTik routers without any issue. Then I just do GRE tunnels and route through those.

I’ve also setup ipsec between Linux IPv6 hosts in the PD subnets without any issue as well. Haven’t tried any other VPN methods on IPv6.

Too bad remote hosts in my case are behind nat or firewall, so support for many vpn types is a must. Wish i can live with ipsec only.