RFC 4890:Recommendations for Filtering ICMPv6 Mess...
RFC-Ref

IPsec


Click on the red underlined text to get to the source

... IPv6 communication. A major concern is that it is generally not possible to use IPsec or other means to authenticate the sender and validate ...
... SEND sidesteps security association bootstrapping problems that would result if IPsec was used. SEND affects only link-local ...
... Although Renumbering messages are required to be authenticated with IPsec, so that it is difficult to carry out such attacks in practice, they should not be allowed through a site boundary firewall ...


... authenticated on delivery, probably because they contain an IPsec AH header or ESP header with authentication ...
... Router Renumbering messages must be authenticated using IPsec, so it is not essential to filter these messages even if they are not ...


... Router Renumbering messages are required to be protected by IPsec authentication since they could be readily misused by attackers ...
... Mobile prefix messages should be protected by the use of IPsec authentication. ...



Google
Web
RFC-Ref