How To Configure An Ipv6 Neighbor Discovery Inspection Policy - Cisco Catalyst 2960-X Security Configuration Manual

Cisco ios release 15.0(2)ex
Hide thumbs Also See for Catalyst 2960-X:
Table of Contents

Advertisement

Configuring IPv6 First Hop Security
Command or Action
Step 6
show ipv6 neighbor binding
Example:
Switch#
show ipv6 neighbor binding

How to Configure an IPv6 Neighbor Discovery Inspection Policy

Beginning in privileged EXEC mode, follow these steps to configure an IPv6 ND Inspection Policy:
SUMMARY STEPS
1. configure terminal
2. [no]ipv6 nd inspection policy policy-name
3. device-role {host | monitor | router | switch}
4. drop-unsecure
5. limit address-count value
6. sec-level minimum value
7. tracking {enable [reachable-lifetime {value | infinite}] | disable [stale-lifetime {value | infinite}]}
8. trusted-port
9. validate source-mac
10. no {device-role | drop-unsecure | limit address-count | sec-level minimum | tracking | trusted-port |
validate source-mac}
11. default {device-role | drop-unsecure | limit address-count | sec-level minimum | tracking | trusted-port
| validate source-mac}
12. do show ipv6 nd inspection policy policy_name
DETAILED STEPS
Command or Action
Step 1
configure terminal
Example:
Switch# configure terminal
Step 2
[no]ipv6 nd inspection policy policy-name
Example:
Switch(config)# ipv6 nd inspection policy
example_policy
OL-29048-01
How to Configure an IPv6 Neighbor Discovery Inspection Policy
Catalyst 2960-X Switch Security Configuration Guide, Cisco IOS Release 15.0(2)EX
Purpose
Displays contents of a binding table.
Purpose
Enters the global configuration mode.
Specifies the ND inspection policy name and enters
ND Inspection Policy configuration mode.
449

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents