In the past, I've had a habit of passing "ipv6.disable=1" (a.k.a. the "nuclear option") to the kernel on hosts I manage. I'm trying to get away from that, though, and lately, I've simply been dropping "everything IPv6" in my rulesets to avoid things like this.
depending on your server environment you'll want to use ip6tables with essentially the same commands as iptables, substituting for ipv6 addresses.
0. https://community.openvpn.net/openvpn/wiki/IPv6