23
STEP 5
STEP 1
STEP 2
STEP 3
Default Settings and Configuration
Before You Start
527
Attach the policy to a VLAN, port or LAG using either the Policy Attachment
(VLAN) or Policy Attachment (Port) pages.
IPv6 Source Guard Work Flow
In the IPv6 Source Guard Settings page, enter the list of VLANs on which this
feature is enabled.
If required, either configure a user-defined policy or add rules to the default
policies for the feature.
Attach the policy to a VLAN, port or LAG using either the Policy Attachment
(VLAN) or Policy Attachment (Port) pages.
If IPv6 First Hop Security is enabled on a VLAN, the switch traps the following
messages by default:
•
Router Advertisement (RA) messages
•
Router Solicitation (RS) messages
•
Neighbor Advertisement (NA) messages
•
Neighbor Solicitation (NS) messages
•
ICMPv6 Redirect messages
•
Certification Path Advertisement (CPA) messages
•
Certification Path Solicitation (CPS) message
•
DHCPv6 messages
The FHS features are disabled by default.
No preliminary tasks are required.
Security: IPv6 First Hop Security
Cisco 500 Series Stackable Managed Switch Administration Guide
Default Settings and Configuration