Dai Configuration; Figure 5-18 Layer-3 Ipv6 Configuration Instance - Zte ZXR10 2900E series Configuration Manual

Easy-maintenance secure switch
Hide thumbs Also See for ZXR10 2900E series:
Table of Contents

Advertisement

Figure 5-18 Layer-3 IPv6 Configuration Instance

l
Configuration Procedure
zte(cfg)#set vlan 300 enable
zte(cfg)#set vlan 300 add port 10
zte(cfg)#set port 10 pvid 300
zte(cfg)#config route
zte(cfg-router)#set ipv6port 0 ipv6address 12:12::c055:40/128
zte(cfg-router)#set ipv6port 0 vlan 300
zte(cfg-router)#set ipv6port 0 enable
zte(cfg-router)#set ipv6port 0 enable
zte(cfg-router)#ipv6route default 12:12::c055:12
l
Configuration Verificatio
zte(cfg-router)#show ipv6port
IpPort
------ ------ --------------- ----------------- ------ ------
0
Use the ping command to check whether the layer-3 port is available.
zte(cfg)#ping6 12:12::c055:40
Reply from 12:12::c055:40 : bytes=48 time<1ms TTL=64
Reply from 12:12::c055:40 : bytes=48 time<1ms TTL=64
Reply from 12:12::c055:40 : bytes=48 time<1ms TTL=64
Reply from 12:12::c055:40 : bytes=48 time<1ms TTL=64
Reply from 12:12::c055:40 : bytes=48 time<1ms TTL=64

5.17 DAI Configuration

DAI Overview
Because so many ARP middle-man-attacks happen, Dynamic ARP Inspection (DAI) is
introduced in the ZXR10 2900E. DAI checks the ARP packet received by the switch. If the
packet meets the condition, it will be forwarded. Otherwise it will be dropped.
DAI is related to the trusted state of the port of the switch. If an ARP packet is received
on a trusted port, shield all DAI detections. If an ARP packet is received on a non-trusted
port, it must pass the DAI validity test.
Configuring DAI
The DAI configuration includes the following commands:
SJ-20130731155059-002|2013-11-27 (R1.0)
Status
Ipv6AddrNum
up
1
5-69
Chapter 5 Service Configuration
MacAddress
VlanId
00.22.93.63.4f.70
300
ZTE Proprietary and Confidential
IpMode
static

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents