Cisco Catalyst 3560-X Software Configuration Manual page 1162

Hide thumbs Also See for Catalyst 3560-X:
Table of Contents

Advertisement

Understanding IPv6
with the information found in the received RA frame. Once the L2 device has validated the content of
the RA frame and router redirect frame against the configuration, it forwards the RA to its unicast or
multicast destination. If the RA frame content is not validated, the RA is dropped.
IPv6 DHCP Guard
You can use the DHCP guard to prevent forged messages from being entered in the binding table. The
DHCP guard blocks DHCP server messages when they are received on ports that are not explicitly
configured as facing a DHCP server or DHCP relay.
To use this feature, configure a policy and attach it to a DHCP guard. To debug DHCP guard packets,
use the debug ipv6 snooping dhcp-guard privileged EXEC command.
IPv6 Source Guard
A source guard programs the hardware to allow or deny traffic based on source or destination addresses.
It deals exclusively with data packet traffic.
The IPv6 source guard feature provides the ability to use the IPv6 binding table to install PACLs to
prevent a host from sending packets with an invalid IPv6 source address.
To debug source-guard packets, use the debug ipv6 snooping source-guard privileged EXEC
command.
Note
The IPv6 PACL feature is supported only in the ingress direction; it is not supported in the egress
direction.
Catalyst 3750-X and 3560-X Switch Software Configuration Guide
1-8
Chapter 1
Configuring IPv6 Unicast Routing
OL-25303-03

Advertisement

Table of Contents
loading

This manual is also suitable for:

Catalyst 3750-x

Table of Contents